Deploy Reveal(x) Ultra on Google Cloud Platform
The following procedures explain how to deploy an ExtraHop Ultra virtual packet sensor in a Google Cloud environment. You must have experience deploying virtual machines in Google Cloud within your virtual network infrastructure.
To ensure that the deployment is successful, make sure you have the ability to create the required resources. You might need to work with other experts in your organization to ensure that the necessary resources are available.
System requirements
Your environment must meet the following requirements to deploy a virtual packet sensor on GCP:
- You must have a Google Cloud Platform (GCP) account
- You must have the ExtraHop deployment file, which is available on the ExtraHop Customer Portal.
- You must have an ExtraHop product key.
- You must have packet mirroring enabled in GCP to forward network traffic to the
ExtraHop system. Packet mirroring must be configured to send traffic to nic1
(not nic0) of the ExtraHop instance. See https://cloud.google.com/vpc/docs/using-packet-mirroring.
Important: To ensure the best performance for initial device synchronization, connect all sensors to the console and then configure network traffic forwarding to the sensors. - You must have firewall rules configured to allow DNS, HTTP, HTTPS, and SSH traffic for ExtraHop administration. See https://cloud.google.com/vpc/docs/using-firewalls.
- You must provision the GCP instance type that most closely matches the virtual
sensor size, as follows:
Sensor Recommended Instance Type Reveal(x) Ultra 1 Gbps n1-standard-8 (8 vCPU, 30 GB memory) Reveal(x) Ultra 10 Gbps n2-standard-32 (32 vCPU, 128 GB memory)
Upload the ExtraHop deployment file
- Sign in to your Google Cloud Platform account.
- From the navigation menu, click .
- Click the name of the storage bucket where you want to upload the ExtraHop deployment file. If you do not have a preconfigured storage bucket, create one now.
- Click Upload files.
- Browse to the extrahop-edaultra-gcp-<version>.tar.gz file you previously downloaded and click Open. Wait for the file to upload, and then continue to the next procedure.
Create the image
- From the navigation menu, click .
-
Click Create Image and complete the following
steps:
- (Reveal(x) Ultra 1 Gbps Only) Click Create.
Create the datastore disk
- From the navigation menu, click .
-
Click Create Disk and complete the following
steps:
- Click Create.
Register the system
Open a web browser and navigate to the ExtraHop system
through the configured management IP address. Accept the license agreement and then log
in with the setup user account. The password is the VM instance
ID. Follow the prompts to enter the product key, change the default setup and shell user
account passwords, connect to ExtraHop Cloud Services, and connect to an ExtraHop
console.
Configure L3 device discovery
You must configure the ExtraHop system to discover and
track local and remote devices by their IP address (L3 Discovery). To learn how device
discovery works in the ExtraHop system, see Device discovery.
- Log in to the Administration settings on the ExtraHop system through https://<extrahop-hostname-or-IP-address>/admin.
- In the System Configuration section, click Capture.
- Click Device Discovery.
- In the Local Device Discovery section, select the Enable local device discovery checkbox to enable L3 Discovery.
- In the Remote Device Discovery section, type the IP address in the IP address ranges field. You can specify one IP address or a CIDR notation, such as 192.168.0.0/24 for an IPv4 network or 2001:db8::/32 for an IPv6 network.
- Click Save.
Thank you for your feedback. Can we contact you to ask follow up questions?