Introduction to CDT
Central Deployment Tool (CDT) is a tool that runs on Gaia Security Management Servers and Gaia Multi-Domain Security Management Servers.
This tool lets you manage deployment of software packages from your Management Server to multiple managed Security Gateways and Cluster Members at the same time:
-
Install and uninstall software packages.
-
Do different actions - take snapshots, run shell scripts, push or pull files, and so on.
-
Automate the RMA backup and restore procedure.
CDT handles cluster upgrades automatically, including Full Connectivity Upgrade - see Package Installation in Clusters.
Below are different workflows to use the Central Deployment Tool (CDT):
-
CDT makes sure that the state of the Security Gateway is valid (all required processed are up and running)
-
CDT prepares Access Control Policy for the Security Gateway:
-
Changes the version in the Security Gateway object.
-
Changes the applicable configuration settings and Access Control Policy.
-
-
CDT executes the Deployment Plan on the Security Gateway:
-
Runs Pre-Script(s).
-
Updates the CPUSE version.
-
Pushes the CPUSE package(s) to the Security Gateway.
-
Imports the CPUSE package(s) on the Security Gateway.
-
Installs the CPUSE package(s) on the Security Gateway.
-
Makes sure the Access Control Policy is installed on the Security Gateway.
-
Runs Post-Script(s).
-
-
CDT makes sure that the state of the Security Gateway is valid (all required processed are up and running).
-
CDT makes sure that the states of the Cluster Members are valid (Active and Standby).
-
CDT prepares Access Control Policy for the Cluster:
-
Changes the version in the Cluster object.
-
Changes the applicable configuration settings and Access Control Policy.
-
-
CDT executes the Deployment Plan on the Standby Cluster Members.
-
Runs Pre-Script(s).
-
Updates the CPUSE version.
-
Pushes the CPUSE package(s) to the Cluster Members.
-
Imports the CPUSE package(s) on the Cluster Members.
-
Installs the CPUSE package(s) on the Cluster Members.
-
Makes sure the Access Control Policy is installed on the Cluster Members.
-
Runs Post-Script(s).
-
-
CDT runs a Full Connectivity Upgrade:
-
Makes sure the upgraded Cluster Member is in the Standby or Ready state.
-
Performs cluster failover to one of the upgraded Cluster Members.
-
-
CDT executes the Deployment Plan on the former Active Cluster Member.
-
CDT makes sure that the states of the Cluster Members are valid (Active and Standby).
-
CDT makes sure that the state:
-
CDT makes sure that the state of the Security Gateway is valid (all required processed are up and running)
-
CDT makes sure that the state of the Cluster Members are valid (Active and Standby)
-
-
CDT executes the Deployment Plan:
-
Runs Pre-Script(s).
-
Updates the CPUSE version.
-
Pushes the CPUSE package(s) to the Security Gateway / Cluster Members.
-
Imports the CPUSE package(s) on the Security Gateway / Cluster Members.
-
Installs the CPUSE package(s) on the Security Gateway / Cluster Members.
-
Makes sure the Access Control Policy is installed on the Security Gateway / Cluster Members.
-
Runs Post-Script(s).
-
-
CDT makes sure that the state is valid:
-
On the Security Gateway all required processed are up and running
-
Cluster Members are in the states Active and Standby
-