Cloudbolt Support will be closed on Thurs Nov 26 in observance of Thanksgiving

Infoblox - Account Setup

Problem

To improve security and stability of an environment, an account with minimal privileges should be used to integrate vRealize Automation with other systems.


Account Configuration

In order to successfully provision IP addresses or create DNS records (A, PTR, IP Reservation and Host records). The following permissions are required:

Allow Access

The following properties must be set on the Infoblox Group containing the service account:

Administration > Administrators > Permissions > Select specific Group > Edit > General:

This can be any option provided the Named ACL or Set of ACEs allow access from the subnet vRO is on.  

Administration > Administrators > Permissions > Select specific Group > Edit > Roles:

Permissions:

Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: IPAM permissions:

Resource/FunctionRead/WriteRead-Only
All Network Views
X
All HostsX


Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: DHCP permissions:

Resource/FunctionRead/WriteRead-Only
All Network Views
X
All HostsX
All IPv4 DHCP Fixed Addresses/ReservationsX


Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: DNS permissions:

Resource/FunctionRead/WriteRead-Only
All DNS Views
X
All HostsX
All A RecordsX
All PTR RecordsX


Note for Microsoft DHCP Ranges Only (complete the following)

Administration > Administrators > Permissions > Select specific Group > Click + > Global Permissions > Permission Type: Grid Permissions:

Resource/FunctionRead/WriteRead-Only
All Microsoft ServersX

Additional information

http://docs.sovlabs.com/latest/vRA/7.5/modules/dns/infoblox-dns/prerequisites/

http://docs.sovlabs.com/latest/vRA/7.5/modules/ipam/infoblox-ipam/prerequisites/


Have more questions? Submit a request

0 Comments

Please sign in to leave a comment.