Deploy Kemp 360 Central in Azure
- Last Updated: October 14, 2024
- 5 minute read
- LoadMaster
- Kemp 360 Central
- Documentation
Follow the steps below to deploy Kemp 360 Central in Azure:
- Log in to the Azure environment at https://portal.azure.com.
- From the Azure Management Portal dashboard, click the New (plus) icon.
Note: Two options are available in the Azure marketplace. If you are using Kemp 360 Central for Metered Licensing or you are under a service provider agreement (SPLA), select the License Agreement Kemp 360 Central (SPLA/MELA) version, otherwise, select the BYOL version.
Note: In some deployments, you may need to click Marketplace before you see the New icon. - Type Kemp 360 Central in the Search field and click Return.
- Select the Kemp 360 Central image to deploy.
Note: If you do not have a license provided by Kemp for BYOL, SPLA, or Metered Licensing, the license defaults to a free, two device annual license. This free license may be upgraded at any stage to a full license. - Ensure you select Resource Manager then click Create.
- Enter a Name for the Virtual Machine.Note: Azure uses this Name to create a resolvable DNS address in the cloudapp.net domain. Use this address to access the Kemp 360 Central appliance on Azure. The Name is used as the hostname, which is needed when connecting a LoadMaster to this Kemp 360 Central instance.
- If you select SSD as the VM disk type, you must select an SSD enabled instance and if you select an HDD instance, you must select an HDD enabled instance. Note: Note that there is a cost associated with selecting SSD as the VM disk type.
- Enter a User name.
- Enter a Password. Note that your password must be between 12 and 72 characters long and contain the following:
- One capital
- One lowercase character
- One number
- One special character other than - or /Note: The username and password described above are only used during the deployment process and will not be accessible on the running system. The Kemp 360 Central credentials are set later in the deployment process.
- Select the relevant Subscription.
- Select the relevant Resource group or create a new one if needed.Note: Resource groups enable you to monitor, control access, provision and manage billing for collections of assets that are required to run an application, or that are used by a client or company department. For an overview of resource groups and the Resource Manager, see: https://docs.microsoft.com/en-us/azure/azure-resource-manager/resource-group-overview
- Select the relevant Location.
- Click OK.
- Select the same disk type that you specified in Step 7 above.
- Select the relevant size and click Select. Note that the graphic is not indicative of current pricing requirements.
- Create a new availability set if required. If you are going to be using Kemp 360 Central in a HA pair, then you must create an availability set for the pair when you create the first Kemp 360 Central. If it is a single Kemp 360 Central in standalone (non-HA) mode, then no availability set is required.Note: Note that the availability set of a virtual machine cannot be changed after it is created.
- Next, configure the storage settings.
- Select the relevant Virtual network or create one if needed.
- Select the relevant Subnet.
- Select the relevant Public IP address or create one if needed.
- Select the relevant Network security group or create one if needed.Note: The default security group has entries that allow connections from any network over the following protocols and ports:
- TCP port 22 (SSH access for diagnostics)
- TCP port 443 (user interface and API)
The above entries are sufficient if all of your managed devices (LoadMasters and other Application Delivery Controller (ADCs)) have IP addresses that are all located on the same network segment as the Kemp 360 Central IP address. If, however, your configuration contains ADCs that are located on networks other than the local Kemp 360 Central network, you must add security group entries for the following: - TCP port 514- UDP port 514 The above entries in the security group are required to allow the non-local managed devices to send Syslog packets to Kemp 360 Central. The best practice is to create entries for specific networks, rather than allowing access across all networks (0.0.0.0/0). Note that you will also need entries for all services on back-end servers to be able to communicate through the Azure firewall. These can be added to the security group now, or later after the services are defined. See the Microsoft Azure documentation for more information on creating appropriate security group entries. - Set Auto-Shutdown to Off.
- Set Monitoring to Enabled.
- Set Manged server identity to No.
- Click OK.
- Click Create. After the VM is deployed, Azure displays the VM dashboard.
The creation of a VM may take a few minutes or more depending on the Azure portal’s responsiveness and other factors. Once created, the instance is automatically booted. If the instance fails boot, check the Boot Diagnostics from the VM dashboard for errors.
Now that the instance is deployed, Kemp 360 Central can be configured by connecting to its assigned IP address or FQDN on port 8443. For more information on this, including instructions on how to license Kemp 360 Central, refer to the Kemp 360 Central Feature Description.