Viz Now Administrator Guide
Version 1.0 | Published May 24, 2023 ©
Introduction to Onboarding
This section provides an overview to the onboarding process and clarifies the terms used.
Once a new organization is set up and an organization admin assigned, the new admin has to go trough the onboarding process to set up the Viz Now account.
-
Vizrt Support will not have login access to the target AWS account, the user needs to perform this action.
-
During onboarding, Viz Now is granted access to the target account using IAM roles that it is allowed to Assume.
This enables Viz Now to deploy infrastructure on the AWS account. -
The steps are described in details in the UI and it should be possible for most users to complete this.
I f issues or problems occur during onboarding, please contact Viz Now support.
Region and Provider
-
The first step of the onboarding process is setting the domain name and CIDR range.
-
Use only lowercase letters a-z and avoid using any special characters.
-
The domain name will be used to automatically issue domain certificates for apps within your organization.
-
The CIDR range should be specified using CIDR block notation, and Viz Now will select unique IP addresses within this range when deploying.
Note: It is important that the account should not have any existing VPC peering with any other networks or be linked to on-premises networks before starting the onboarding process.
The Viz Now spaces must exist as separate entities and use tools such as NDI Bridge to bring video streams in and out. -
You need to select the regions where Viz Now should deploy its content.
-
Viz Now will deploy spaces on your AWS account to any of the selected regions, depending on the availability of the necessary instance types.
-
You can order the regions by preference, with the topmost region being the first choice.
-
With the Refresh button, you can automatically select the 3 closest regions.
-
Deployment Role
The AWS integration for Viz Now allows it to assume an IAM role in your AWS account and generate temporary credentials to perform tasks such as installing and configuring a new space.
The Deployment Agent used is a 3rd party tool and you should not need to refer to its documentation, as everything is handled by Viz Now.
The AWS integration for Viz Now allows it to perform tasks like:
-
Increasing the quota.
-
Reserving EC2 instance types.
-
Managing S3 buckets and security groups.
-
Creating and accepting VPC peerings.
-
Starting and stopping EC2 instances, and destroying ec2 instances.
To set up the integration
The deployment Agent needs to assume an IAM role in your organization's AWS account.
-
Make sure you have an AWS account set up and are logged in as a user with IAM Administrator rights.
-
You will need to create this role in the AWS Console and provide Viz Now with the necessary information.
The roles needs AdministratorAccess privileges.
Note: If this role requirement conflicts with your company policy, contact Vizrt Support for advice on how to proceed with more granular AWS policies.
-
Follow the steps in the Viz Now onboarding UI and click the link to create a new IAM role in your AWS account.
-
Once the role is created, copy the ARN code and paste it into the Viz Now form to enable Viz Now to deploy instances in your environment.
Licensing
The final step of the onboarding process involves deploying a License server. Once this is successful, your Viz Now account is ready for use.