在 VMM 光纖中設定 IPAM 伺服器Set up an IPAM server in the VMM fabric

重要

已不再支援此版本的 Virtual Machine Manager (VMM),建議升級至 VMM 2019This version of Virtual Machine Manager (VMM) has reached the end of support, we recommend you to upgrade to VMM 2019.

本文說明如何將 IP 位址管理 (IPAM) 伺服器新增至 System Center - Virtual Machine Manager (VMM) 網路功能網狀架構。This article explains how to add an IP Address Management (IPAM) server to the System Center - Virtual Machine Manager (VMM) networking fabric.

IPAM 伺服器可協助您規劃、追蹤和管理網路中所使用的 IP 位址空間。An IPAM server helps you to plan, track, and manage the IP address space used in your networks.

  • VMM 光纖中具有 IPAM 伺服器之後,就會使用 IPAM 伺服器上所儲存的設定來同步處理與 VMM 中邏輯網路和 VM 網路相關聯的 IP 位址設定。With an IPAM server in the VMM fabric, the IP address settings that are associated with logical networks and VM networks in VMM are synchronized using settings stored on the IPAM server.
  • 身為系統管理員,您可以使用 IPAM 伺服器設定並監視邏輯網路以及其相關聯的網站和 IP 位址集區。As an administrator you can use the IPAM server to configure and monitor logical networks and their associated network sites and IP address pools. 您也可以使用 IPAM 伺服器監視您在 VMM 中設定或變更之 VM 網路的使用情況。You can also use the IPAM server to monitor the usage of VM networks that you have configured or changed in VMM.
  • 租用戶必須繼續使用 VMM 伺服器 (不是 IPAM) 來設定使用網路虛擬化的 VM 網路。Tenants must continue to use the VMM server (not IPAM) to configure VM networks that use network virtualization. 換句話說,也就是控制通常由租用戶 (而非 VMM 系統管理員) 所控制的位址空間。In other words, to control the address space that is typically controlled by tenants rather than by VMM administrators.

在您開始使用 Intune 之前Before you start

  • 請確定您有 IPAM 伺服器。Make sure you have an IPAM server. 進一步瞭解Learn more. IPAM 伺服器可執行這些版本的 Windows ServerThe IPAM server can be running these versions of Windows Servers.
  • 建立或識別網域帳戶,並將它設定為永不過期。Create or identify a domain account and set it to never expire. 在 IPAM 伺服器上,將帳戶新增至這些群組︰On the IPAM server add the account to these groups:
    • IPAM ASM Administrators:存在於所有 IPAM 伺服器上的本機群組,並提供 IP 位址空間管理 (ASM) 的權限。IPAM ASM Administrators: A local group that exists on all IPAM servers, and provides permissions for IP address space management (ASM). 如需詳細資訊,請參閱 Assign Administrator Roles (指派系統管理員角色)For more information, see Assign Administrator Roles.
    • Remote Management Users:提供透過管理通訊協定存取 WMI 資源的內建群組,例如透過 Windows 遠端管理服務的 WS-Management。Remote Management Users: A built-in group that provides access to WMI resources through management protocols, such as WS-Management through the Windows Remote Management service.
  • 請檢查 IPAM 和 VMM 伺服器上的時間同步。Check that the time is synchronized on the IPAM and VMM servers. 這取決於 Windows 時間服務的設定。This depends on settings for the Windows Time Service. 如果您無法將其同步,則需要更新 IPAM 軟體上的權限,讓 VMM 可以查詢伺服器上的目前時間設定。If you can't synchronize them you'll need to update permissions on the IPAM software so that VMM can query the current time setting on the server. 若要這樣做,請在 IPAM 伺服器上執行 mimgmt.msc,以開啟 [WMI 控制 (本機)] 嵌入式管理單元。To do this, on the IPAM server run mimgmt.msc to open the WMI Control (Local) snap-in. 以滑鼠右鍵按一下 [WMI 控制 (本機)] > [內容] > [安全性] 。Right-click WMI Control (Local) > Properties > Security. 巡覽至 Root\CIMV2,並按一下 [安全性] 按鈕,然後選取您所設定的帳戶。Navigate to Root\CIMV2, click the Security button Security and select the account you configured. 針對 [遠端啟用] ,選取 [允許] 。For Remote Enable, select Allow.
  • 確認要作為連線字串使用之 IPAM 伺服器的 FQDN。Verify the FQDN of the IPAM server to use as a connection string.
  • 確認您要使用 IPAM 伺服器之 VMM 主機群組的名稱。Verify the names of the VMM host groups for which you want to use the IPAM server.
  • VMM 隨附 IPAM 伺服器的提供者軟體。The provider software for an IPAM server is included in VMM. 您不需要安裝它。You don't need to install it. 您可以在 [設定] > [設定提供者] 中檢閱設定。You can review settings in Settings > Configuration Providers.
  • 如果您想要使用 IPAM 伺服器刪除邏輯網路,請刪除指派給該邏輯網路的 IP 位址子網路,而不要刪除 IPAM 伺服器上與 [VMM 邏輯網路] 欄位相關聯的名稱。If you want to use the IPAM server to delete a logical network, delete the IP address subnets assigned to that logical network, and do not delete the name associated with the VMM Logical Network field on the IPAM server. 如此這兩部伺服器便能夠正確同步處理,且將刪除邏輯網路。The two servers will then be able to synchronize correctly, and the logical network will be deleted. 如果您實際刪除 IPAM 伺服器上與 [VMM 邏輯網路] 欄位相關聯的名稱,則必須移至 VMM 伺服器,並刪除網站和邏輯網路。If you do delete the name associated with the VMM Logical Network field on the IPAM server, you must go to the VMM server and delete the network sites and the logical network. 接下來,在兩部伺服器同步處理後,刪除作業就會完成。Then, after the two servers synchronize, the deletion will be complete.

將 IPAM 伺服器新增至光纖Add an IPAM server to the fabric

  1. 按一下 [光纖] > [首頁] > [顯示] > [光纖資源] > [光纖] > [網路功能] > [網路服務] 。Click Fabric > Home > Show > Fabric Resources > Fabric > Networking > Network Service. 網路服務包括閘道、虛擬交換器擴充功能、網路管理員 (包括 IPAM 伺服器) 和 Top-of-Rack (TOR) 交換器。Network services include gateways, virtual switch extensions, network managers (which include IPAM servers), and top-of-rack (TOR) switches.
  2. 按一下 [首頁] >[新增] > [新增資源] > [網路服務] 。Click Home >Add > Add Resources > Network Service.
  3. 在 [新增網路服務精靈] > [名稱] 中,指定名稱和選擇性描述。In Add Network Service Wizard > Name specify a name and optional description.
  4. 在 [製造商和型號] > [製造商] 中,按一下 [Microsoft] ,然後按一下 [型號] > [Microsoft Windows Server IP 位址管理] 。In Manufacturer and Model > Manufacturer click Microsoft, and click Model > Microsoft Windows Server IP Address Management.
  5. 在 [認證] 頁面中,指定您建立的帳戶。In Credentials page specify the account you created.
  6. 在 [連線字串] 頁面的 [連線字串] 方塊中,輸入 IPAM 伺服器的 FQDN。In Connection String page, in the Connection string box, type the FQDN of the IPAM server. 如果您已在 IPAM 伺服器上設定特定通訊埠,請使用該通訊埠號碼作為字串的結尾 (例如 :443)。If you've configured a specific port on the IPAM server, end the string with the port number (for example, :443). 如果未指定通訊埠號碼,就會使用 IPAM 伺服器的預設通訊埠。If a port number is not specified, the default port for the IPAM server is used.
  7. 在 [提供者] > [設定提供者] > [Microsoft IP 位址管理提供者] 中,按一下 [測試] ,對提供者執行基本驗證測試。In Provider > Configuration provider > Microsoft IP Address Management Provider, click Test to run basic validation tests with the provider. 結果會顯示 [通過] 或 [失敗] 來表示提供者是否正常運作。Results that say Passed or Failed indicate whether the provider works as expected. 失敗的可能原因之一是執行身分帳戶的權限不足。One possible cause of failure is insufficient permissions in the Run As account. 若結果顯示 [已實作] 和 [未實作] ,則僅供參考之用,其表示提供者是否支援特定 API。Results that say Implemented and Not implemented are informational only, and indicate whether the provider supports a particular API.
  8. 在 [主機群組] 中,選取您要在 IPAM 伺服器與 VMM 伺服器之間整合的一或多個主機群組。In Host Group select one or more host groups for which you want integration between the IPAM server and the VMM server.
  9. 檢閱 [摘要] 中的設定,然後按一下 [完成] 。In Summary review the settings and click Finish. 檢查 IPAM 伺服器列在 [網路服務] 下方。Check that the IPAM server is listed under Network Services. 以滑鼠右鍵按一下伺服器 > [重新整理] 取得最新設定。Right-click the server > Refresh to get the latest settings.
  10. 在 IPAM 伺服器上,若要檢視已在 VMM 中設定的邏輯網路和相關設定,請瀏覽至 [虛擬化 IP 位址空間] ,再瀏覽至 [提供者 IP 位址空間] 。On the IPAM server, to view the logical networks and related settings that were configured in VMM, navigate to VIRTUALIZED IP ADDRESS SPACE, and then to Provider IP Address Space. 針對每個邏輯網路,IPAM 伺服器會有一個依邏輯網路名稱為名的位址空間 (可在 IPAM 中找到,但不在 VMM 中的核心類別)。For each logical network, the IPAM server will have an address space (an overarching category that is found in IPAM, but not in VMM) with a name that is based on the name of the logical network. 邏輯網路將包含在位址空間內,而邏輯網路的名稱會顯示在 [VMM 邏輯網路] 標題下方。The logical network will be contained within the address space, with the name of the logical network displayed under the heading VMM Logical Network. 若要檢視 IPAM 中儲存的資訊類型,請展開位址空間並選取不同的檢視。To see the types of information that are stored in IPAM, expand the address space and select different views.

下表可協助您解讀在 IPAM 伺服器上看到的一些資訊:The following table can help you interpret some of the information that you see on the IPAM server:

VMM 名稱VMM name IPAM 名稱IPAM name
邏輯網路Logical network 虛擬化 IP 位址空間VIRTUALIZED IP ADDRESS SPACE
提供者 IP 位址空間:[VMM 邏輯網路] 欄Provider IP Address Space: VMM Logical Network column
網站Network site 虛擬化 IP 位址空間VIRTUALIZED IP ADDRESS SPACE
提供者 IP 位址空間:[VMM 邏輯網路] Network SiteProvider IP Address Space: Network Site column
IP 位址子網路IP address subnet IP 位址子網路 (在 IPAM 中的名稱與 VMM 中的名稱相同)IP Address Subnet (same name in IPAM as in VMM)
IP 位址集區IP address pool IP 位址範圍IP Address Range
VM 網路VM network 虛擬化 IP 位址空間VIRTUALIZED IP ADDRESS SPACE
客戶 IP 位址空間: [VM 網路] VM NetworkCustomer IP Address Space: VM Network column

IP 位址保留IP address reservation

VMM 會接受 IPAM 中的 IP 保留。IP reservation in IPAM is honored by VMM. 請遵循下列步驟來保留 IP 位址。Please follow the steps below for reserving IP addresses.

  1. 在 IPAM 中,以滑鼠右鍵按一下 IP 位址保留的 [IP 位址範圍] 。In IPAM, right-click IP Address Range for IP address reservation.
  2. 按一下 [編輯 IP 位址範圍] ,視窗隨即開啟。Click Edit IP Address Range and a window opens.
  3. 在開啟的視窗中,左側會有 [保留] 索引標籤。In the opened window, there is a Reservations tab on the left.
  4. 在 [保留] 索引標籤中,您可以保留 IP 位址保留,或是否要使用它們作為 VIP。In the Reservations tab you can reserve IP addresses for reservation or whether to use them as VIPs.
  5. 移至 VMM 主控台。Go to VMM console. 重新整理 [網路服務] 區段中的 IPAM 服務。Refresh the IPAM service in the network service section.
  6. 現在,您可以看到保留的 IP 位址反映在邏輯網路的 [集區] 區段中。Now, you can see the reserved IP addresses reflected in the pool section of the logical network.

後續步驟Next steps

設定邏輯網路Set up logical networks