Automatic Overlapping IP Addresses End-to-End Configuration
Requirements
The following are requirements for using the Automatic Overlapping IP Addresses implementation:
- Operational Technology Plugin (Version 1.4.20 and above). For information about this module, refer to About the Operational Technology Plugin in the Operational technology Plugin Configuration Guide.
- Highly distributed Overlapping IP environment, in which there are a large number of monitoring sensors, and there is no need for an Appliance to reside in that environment.
- The Appliance capacity exceeds the number of endpoints per IP Reuse Domain.
- All Appliances that manage Operational Technology endpoints are grouped in Appliance folders, where each folder contains at least one focal Appliance associated with a specific Command Center.
An Appliance folder may contain more than one focal Appliance, where each focal Appliance is associated with one specific Command Center.
Appliance (IP Assignment) folders are used to group devices into a tree structure, and to correlate Appliances with geographical or functional segments of the Internal Network. The Appliances in a folder handle endpoints in the Internal Network segments you assigned to the folder.
For more information about Appliance Folders, refer to in the Forescout eyeSight Administration Guide.
Do not assign IP Segments directly to a focal Appliance when the expected number of endpoints is larger than the Appliance’s capacity, because the focal Appliance will then manage all these endpoints alone.
Performance Considerations
The following are performance considerations for the Automatic Overlapping IP Addresses implementation:
- The minimum recommended licensing and sizing requirements for an Automatic Overlapping IP Addresses implementation to support up to 200k endpoints on a focal Appliance is as follows:
Platform Flexx Licensing Per-Appliance Licensing Physical 5140 CT-4000 Virtual Medium size VCT-4000 - Use dedicated Appliances that connect with Operational Technology endpoints only.
- Use Command Center Polling to prevent focal Appliance overload: See Set Polling Interval for Retrieving Host Information from the Command Center.