This step-by-step setup of Virtual Services leverages the application template for Dell EMC ECS with Layer 7. Layer 7 does not have the same requirements as the Layer 4 configuration above:

  • The Connection Manager can be set up with one-arm or two-arm configurations.
  • ECS nodes do not require the use of the Connection Manager as the default gateway.
  • Connections to the ECS environment can be initiated from the same subnet or a different subnet.

In addition, Layer 7 by default does not use transparency and therefore the IP address of the Connection Manager is used when accessing the ECS environment. X-Forwarded-For header is leveraged to provide the original source IP address in the ECS logs for troubleshooting purposes. When a secure connection is used, a certificate must be installed on the Connection Manager to decrypt the traffic for the X-Forwarded-For header insertion. This traffic can then be re-encrypted or offloaded depending on the security requirements. The ECS environment requires some configuration for X-Forwarded-For to be leveraged. Consult with Dell ECS to enable this feature in ECS.

The table in each section outlines the settings configured by the application template. You can use this information to manually configure Virtual Services or using the Connection Manager API and automation tools.