Tower Intro PDF

Download as pdf or txt
Download as pdf or txt
You are on page 1of 34
At a glance
Powered by AI
The key takeaways are that Ansible Tower allows for scaling of IT automation through a user interface and API, with features like role-based access control, workflows, and logging.

Ansible Tower is a UI and RESTful API that allows scaling of IT automation, managing complex deployments, and increasing productivity.

Some key features of Ansible Tower include role-based access control, push button deployment access, centralized logging, and powerful workflows.

AUTOMATION ACROSS

THE ENTERPRISE
WHAT WILL YOU LEARN?

● What is Ansible Tower


● How Ansible Tower Works
● Installing Ansible Tower
● Key Features
WHAT IS ANSIBLE TOWER?
Ansible Tower is a UI and RESTful API allowing
you to scale IT automation, manage complex
deployments and speed productivity.

• Role-based access control

• Deploy entire applications with


push-button deployment access

• All automations are centrally logged

• Powerful workflows match your IT processes


RBAC PUSH BUTTON RESTful API
Allow restricting playbook access to An intuitive user interface experience With an API first mentality every
authorized users. One team can use makes it easy for novice users to feature and function of Tower can be
playbooks in check mode (read-only) execute playbooks you allow them API driven. Allow seamless integration
while others have full administrative access to. with other tools like ServiceNow and
abilities. Infoblox.

WORKFLOWS ENTERPRISE INTEGRATIONS CENTRALIZED LOGGING


Ansible Tower’s multi-playbook Integrate with enterprise All automation activity is securely
workflows chain any number of authentication like TACACS+, RADIUS, logged. Who ran it, how they
playbooks, regardless of whether they Azure AD. Setup token authentication customized it, what it did, where it
use different inventories, run as with OAuth 2. Setup notifications with happened - all securely stored and
different users, run at once or utilize PagerDuty, Slack and Twilio. viewable later, or exported through
different credentials. Ansible Tower’s API.
…. ANSIBLE CLI & CI SYSTEMS
ANSIBLE PLAYBOOKS
ADMINS
ROLE-BASED KNOWLEDGE SCHEDULED &
ANSIBLE ACCESS CONTROL & VISIBILITY CENTRALIZED JOBS
TOWER
SIMPLE USER INTERFACE TOWER API

USERS

OPEN SOURCE MODULE LIBRARY


ANSIBLE
ENGINE PLUGINS PYTHON CODEBASE

TRANSPORT

SSH, WINRM, ETC.

INFRASTRUCTURE NETWORKS CONTAINERS CLOUD SERVICES


AUTOMATE LINUX, ARISTA, DOCKER, AWS, DATABASES,
YOUR WINDOWS, CISCO, LXC … GOOGLE CLOUD, LOGGING,
ENTERPRISE UNIX … JUNIPER … AZURE … SOURCE CONTROL
MANAGEMENT…

USE
CASES
PROVISIONING CONFIGURATION APP CONTINUOUS SECURITY & ORCHESTRATION
MANAGEMENT DEPLOYMENT DELIVERY COMPLIANCE
INSTALLING ANSIBLE TOWER

# the most common and preferred way of


# installation for Red Hat Enterprise Linux
$ wget https://bit.ly/ansibletower

# bundled installer can be downloaded for


# Red Hat Enterprise Linux
$ wget https://bit.ly/ansibletowerbundle

# looking for a specific version? navigate to


# http://releases.ansible.com/ansible-tower
# to see all the versions available for download
SERVER REQUIREMENTS

● Red Hat Enterprise Linux (RHEL) 7 (and select derivatives), Ubuntu


14.04 64-bit, and Ubuntu 16.04 LTS 64-bit support required (kernel
and runtime).
● A currently supported version of Mozilla Firefox or Google Chrome.
● 2 GB RAM minimum (4+ GB RAM highly recommended)
● 20 GB of dedicated hard disk space
FEATURE OVERVIEW:

TOWER CONCEPTS
USER MANAGEMENT

● A user is an account to access Ansible Tower and its services given


the permissions granted to it.

● An organization is a logical collection of users, teams, projects,


inventories and more. All entities belong to an organization with the
exception of users.

● Teams provide a means to implement role-based access control


schemes and delegate responsibilities across organizations.
CREDENTIALS

Credentials are utilized by Ansible Tower for authentication with various


external resources:

● Connecting to remote machines to run jobs


● Syncing with inventory sources
● Importing project content from version control systems
● Connecting to and managing network devices

Centralized management of various credentials allows end users to


leverage a secret without ever exposing that secret to them.
INVENTORY

Inventory is a collection of hosts (nodes) with associated data and


groupings that Ansible Tower can connect to and manage.

● Hosts (nodes)
● Groups
● Inventory-specific data (variables)
● Static or dynamic sources
PROJECTS

A Project is a logical collection of Ansible Playbooks, represented in


Ansible Tower.

You can manage Playbooks and Playbook directories by placing them in a


source code management system supported by Ansible Tower, including
Git, Subversion, and Mercurial.
JOB TEMPLATES

A job template is a definition and set of parameters for running an Ansible


Playbook.

Job templates are useful to execute the same job many times and
encourage the reuse of Ansible Playbook content and collaboration
between teams.
JOBS

A job is an instance of Ansible Tower launching an Ansible Playbook


against an inventory of hosts.

● Job results can be easily viewed


● View the standard out for a more in-depth look
ROLE BASED ACCESS CONTROL (RBAC)

Role-Based Access Controls (RBAC) are built into Ansible Tower and
allow administrators to delegate access to server inventories,
organizations, and more. These controls allow Ansible Tower to help you
increase security and streamline management of your Ansible
automation.
ROLE BASED ACCESS CONTROL (RBAC)

Role-Based Access Controls (RBAC) are built into Ansible Tower and
allow administrators to delegate access to server inventories,
organizations, and more. These controls allow Ansible Tower to help you
increase security and streamline management of your Ansible
automation.
DYNAMIC INVENTORY

Dynamic inventory is a script that queries a service, like a cloud provider API or a
management application. This data is formatted in an Ansible-specific JSON data
structure and is used in lieu of static inventory files.

● Groups are generated based on host metadata


● Single source of truth saves time, avoids duplication and reduces human
error
● Dynamic and static inventory sources can be used together
FEATURE OVERVIEW:

CONTROL
ANSIBLE TOWER FEATURES: YOUR ANSIBLE DASHBOARD
ANSIBLE TOWER FEATURES: JOB STATUS UPDATE
ANSIBLE TOWER FEATURES: ACTIVITY STREAM
ANSIBLE TOWER FEATURES: MANAGE AND TRACK YOUR INVENTORY
ANSIBLE TOWER FEATURES: SCHEDULE JOBS
ANSIBLE TOWER FEATURES: EXTERNAL LOGGING
ANSIBLE TOWER FEATURES: INTEGRATED NOTIFICATIONS
FEATURE OVERVIEW:

DELEGATION
ANSIBLE TOWER FEATURES: ROLE BASED ACCESS CONTROL
USERS TEAMS
ANSIBLE TOWER FEATURES: ROLE BASED ACCESS CONTROL

28
ANSIBLE TOWER FEATURES: SELF-SERVICE I.T.
ANSIBLE TOWER FEATURES: REMOTE COMMAND EXECUTION
FEATURE OVERVIEW:

SCALE
ANSIBLE TOWER FEATURES: CREATE AUTOMATION WORKFLOWS
ANSIBLE TOWER FEATURES: SCALE OUT CLUSTERING
NEXT STEPS

GET STARTED JOIN THE COMMUNITY


ansible.com/get-started ansible.com/community

ansible.com/tower-trial

WORKSHOPS & TRAINING SHARE YOUR STORY


ansible.com/workshops Follow us @Ansible

Red Hat Training Friend us on Facebook

You might also like