


{"id":240040,"date":"2022-11-07T22:50:33","date_gmt":"2022-11-07T22:50:33","guid":{"rendered":"\/forum\/?post_type=topic&#038;p=240040"},"modified":"2024-09-26T15:54:39","modified_gmt":"2024-09-26T15:54:39","slug":"ansys-gateway-powered-by-aws-onboarding-overview-and-prerequisites","status":"closed","type":"topic","link":"https:\/\/innovationspace.ansys.com\/forum\/forums\/topic\/ansys-gateway-powered-by-aws-onboarding-overview-and-prerequisites\/","title":{"rendered":"Ansys Gateway powered by AWS: Onboarding Setup Overview and Prerequisites"},"content":{"rendered":"<p>&lt;h3&gt;<strong>&lt;span style=&#8221;font-size: 16.0pt; color: #ffc000;&#8221;&gt;\/ &lt;\/span&gt;<\/strong>Introduction&lt;\/h3&gt;&lt;p&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;To enable your company to access Amazon Web Services (AWS) resources via Ansys Gateway powered by AWS, you must complete a setup process. This is automatically launched on the screen when you subscribe to Ansys Gateway powered by AWS.&lt;\/span&gt; &lt;span style=&#8221;font-size: 12pt;&#8221;&gt;There are two options available for setting up Ansys Gateway powered by AWS:&nbsp;<strong>&lt;span class=&#8221;emphasis&#8221;&gt;<em>Express<\/em>&lt;\/span&gt;&nbsp;<\/strong>and&nbsp;<strong>&lt;span class=&#8221;emphasis&#8221;&gt;<em>Manual<\/em>&lt;\/span&gt;<\/strong>. See <a href=\"\/forum\/forums\/topic\/gateway-onboarding-methods\/\">Gateway onboarding methods (ansys.com)<\/a>&lt;\/span&gt; &lt;span style=&#8221;font-size: 12pt;&#8221;&gt;Ansys recommends Express setup as it requires minimal IT expertise and configuration. Manual setup is only needed if you want to integrate Active Directory with Ansys Gateway powered by AWS. Please see the IT Administration Videos&nbsp;<a href=\"https:\/\/view.genial.ly\/64a3e1e01cf7b8001855c940\">here<\/a>.&lt;\/span&gt; &lt;span style=&#8221;font-size: 12pt;&#8221;&gt;To perform the setup, you must have an Ansys ID. For more information about Ansys ID see the&nbsp;<a href=\"https:\/\/ansyshelp.ansys.com\/account\/secured?returnurl=\/Views\/Secured\/Account\/v000\/en\/ans_acct\/ans_acct.html\" target=\"_self\" rel=\"noopener\">Ansys Account Management<\/a>&nbsp;guide or the&nbsp;<a href=\"https:\/\/webapps.ansys.com\/era\/ssosupport\/index\" target=\"external\" rel=\"noopener\">Ansys Sign-In Help<\/a>.&nbsp;Post onboarding, users can sign in to Ansys Gateway web portal if following criteria are met. &lt;\/span&gt;&lt;\/p&gt;<\/p>\n<ol>\n<li>&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;User&#8217;s Ansys ID email address domain matches the Ansys ID email address domain of the IT administrator, which is used during onboarding.&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;User&#8217;s Ansys ID email address is added in the mail property of Actitve Directory user profile.&lt;\/span&gt;<\/li>\n<\/ol>\n<p>&lt;p&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;Users need to be explicitly added to Project Space\/s to view or access any Project Space.&lt;\/span&gt; &lt;span style=&#8221;font-size: 12pt;&#8221;&gt;To prepare for connecting to Ansys Gateway powered by AWS, ensure that you meet the prerequisites for your desired setup method.&lt;\/span&gt;&lt;\/p&gt;&lt;div class=&#8221;note&#8221; title=&#8221;Note&#8221;&gt;&lt;hr&gt;&lt;\/div&gt;&lt;p&gt;&lt;span style=&#8221;font-size: 14pt;&#8221;&gt;<strong>This article refers to Manual Setup, For Express Setup, please see: <a href=\"\/forum\/forums\/topic\/ansys-gateway-powered-by-aws-express-setup-overview-and-prerequisites\/\" target=\"_blank\" rel=\"noopener\">Ansys Gateway powered by AWS &ndash; Express Setup Overview and Prerequisites<\/a><\/strong>&lt;\/span&gt;&lt;\/p&gt;&lt;h3&gt;<strong>&lt;span style=&#8221;font-size: 16.0pt; color: #ffc000;&#8221;&gt;\/ &lt;\/span&gt;<\/strong>Overview of Manual Setup Process&lt;\/h3&gt;&lt;p class=&#8221;Default&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;To connect your local network to Ansys Gateway powered by AWS, you will enter information in the wizard and perform tasks in your local IT environment, AWS Cloud, and Ansys Gateway powered by AWS. Please see short video of Manual Setup process at <a href=\"https:\/\/www.youtube.com\/watch?v=diPiCcHNrUE&amp;list=PL0lZXwHtV6Omw8rjdXmr4UiDj2WZksygA&amp;index=2\">Ansys Gateway powered by AWS: Manual Setup (youtube.com)<\/a>&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;Default&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;<a href=\"\/forum\/wp-content\/uploads\/sites\/2\/2022\/11\/07-11-2022-1667861235-mceclip0.png\"><img decoding=\"async\" src=\"\/forum\/wp-content\/uploads\/sites\/2\/2022\/11\/07-11-2022-1667861235-mceclip0.png\" \/><\/a>&lt;\/span&gt;&lt;\/p&gt;&lt;h3 class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;<strong>&lt;span style=&#8221;font-size: 16.0pt; color: #ffc000;&#8221;&gt;\/ &lt;\/span&gt;<\/strong><strong>&lt;span style=&#8221;font-size: 18.0pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;How Ansys Gateway powered by AWS works&lt;\/span&gt;<\/strong>&lt;\/h3&gt;&lt;p class=&#8221;Default&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: windowtext;&#8221;&gt;Here is an overview of how everything connects and works together. <a href=\"\/forum\/wp-content\/uploads\/sites\/2\/2022\/11\/07-11-2022-1667861261-mceclip1.png\"><img decoding=\"async\" src=\"\/forum\/wp-content\/uploads\/sites\/2\/2022\/11\/07-11-2022-1667861261-mceclip1.png\" \/><\/a>&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;Default&#8221;&gt;&nbsp;&lt;\/p&gt;&lt;h3 class=&#8221;MsoNormal&#8221;&gt;<strong>&lt;span style=&#8221;font-size: 16.0pt; line-height: 107%; color: #ffc000;&#8221;&gt;\/ &lt;\/span&gt;<\/strong>&lt;span class=&#8221;Heading1Char&#8221;&gt;&lt;span style=&#8221;font-size: 18.0pt; line-height: 107%;&#8221;&gt;Prerequisites&lt;\/span&gt;&lt;\/span&gt;&lt;\/h3&gt;&lt;p&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;To prepare for connecting to Ansys Gateway powered by AWS, you must have the following set up in AWS:&lt;\/span&gt;&lt;\/p&gt;<\/p>\n<ol>&lt;li class=&#8221;hasChild hassub&#8221; style=&#8221;font-size: 12pt;&#8221;&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;AWS Administrator who is running Manual setup should have full administrative privileges to run AWS Cloud Formation Template (AWSCloudFormationFullAccess policy) on their AWS account. Post Manual setup, AWS Administrator will be asked to run an AWS Cloud Formation Template which provides a shared access role with the following policies to Ansys Gateway by AWS.&lt;\/span&gt;<\/li>\n<\/ol>\n<p>&lt;ul class=&#8221;topic-with-bgcolor&#8221;&gt;&lt;li class=&#8221;hassub&#8221; style=&#8221;font-size: 12pt;&#8221;&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;AmazonEC2FullAccess&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;hassub&#8221; style=&#8221;font-size: 12pt;&#8221;&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;ServiceQuotasFullAccess&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;hassub&#8221; style=&#8221;font-size: 12pt;&#8221;&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;AWSPriceListServiceFullAccess&lt;\/span&gt;<\/li>\n<\/ul>\n<p>&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;This onboarding wizard is configured for customers with a single domain only. If your email\/authentication\/active directory domains are different, please contact Ansys support. This guide assumes that you have the following already set up:&lt;\/span&gt;&lt;\/p&gt;&lt;h3 class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 18pt;&#8221;&gt;<strong>&lt;span style=&#8221;font-family: &#8216;Calibri Light&#8217;, sans-serif;&#8221;&gt;\/ &lt;\/span&gt;<\/strong><strong>&lt;span style=&#8221;font-family: &#8216;Times New Roman&#8217;, serif;&#8221;&gt;Ansys ID Requirement&lt;\/span&gt;<\/strong>&lt;\/span&gt;&lt;\/h3&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 12pt;&#8221;&gt;&lt;span style=&#8221;font-family: &#8216;Times New Roman&#8217;, serif;&#8221;&gt;To be able to launch Manual setup or &lt;\/span&gt;<a href=\"https:\/\/ansyshelp.ansys.com\/Views\/Secured\/gateway\/v000\/en\/gateway_gs\/signing_in.html\">&lt;span style=&#8221;font-family: &#8216;Times New Roman&#8217;, serif;&#8221;&gt;sign in&lt;\/span&gt;<\/a>&lt;span style=&#8221;font-family: &#8216;Times New Roman&#8217;, serif;&#8221;&gt; to Ansys Gateway powered by AWS, you must have an Ansys ID. If you do not have one, you will be prompted to create an Ansys account when signing in.&lt;\/span&gt;&lt;\/span&gt;&lt;\/p&gt;&lt;h3 class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 18pt;&#8221;&gt;<strong>&lt;span style=&#8221;font-family: &#8216;Calibri Light&#8217;, sans-serif;&#8221;&gt;\/ &lt;\/span&gt;<\/strong>&lt;\/span&gt;<strong>&lt;span style=&#8221;font-size: 14pt; font-family: &#8216;Calibri Light&#8217;, sans-serif;&#8221;&gt;&nbsp;&lt;\/span&gt;<\/strong>&lt;span class=&#8221;Heading2Char&#8221;&gt;&lt;span style=&#8221;font-size: 14.0pt;&#8221;&gt;Prepare your local IT environment&lt;\/span&gt;&lt;\/span&gt;&lt;\/h3&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;To prepare for connecting to Ansys Gateway powered by AWS, you must have the following set up in your local environment:&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin: 0in; text-indent: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;&nbsp;&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoListParagraph&#8221; style=&#8221;text-indent: -.25in; line-height: normal; margin: 0in 0in 0in .25in;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span class=&#8221;Heading3Char&#8221;&gt;&lt;span style=&#8221;font-size: 14.0pt;&#8221;&gt;1.&lt;span style=&#8221;font: 7.0pt &#8216;Times New Roman&#8217;;&#8221;&gt;&nbsp;&nbsp;&nbsp;&nbsp; &lt;\/span&gt;&lt;\/span&gt;&lt;\/span&gt;&lt;!&#8211;[endif]&#8211;&gt;&lt;span class=&#8221;Heading3Char&#8221;&gt;&lt;span style=&#8221;font-size: 14.0pt;&#8221;&gt;A local server hosting Active Directory&lt;\/span&gt;&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;Requirements:&lt;\/span&gt;<\/strong>&lt;\/p&gt;<\/p>\n<ul>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;LDAP for querying the AD and authenticating access to it&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;AD service account with permissions to:&lt;\/span&gt;\n<ul>\n<li>&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-family: &#8216;Source Sans Pro&#8217;, sans-serif;&#8221;&gt;Join a machine to the domain&lt;\/span&gt;&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;Create groups and machines within a specified&nbsp; Organizational Unit (OU). &lt;\/span&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;Permission to create groups can be removed after successful onboarding.&nbsp;&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;Read users in the groups within the specified Organizational Unit.&lt;\/span&gt;<\/li>\n<\/ul>\n<\/li>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;, sans-serif;&#8221;&gt;All user accounts should have Ansys ID email address defined in the user account mail property &#8211; Active Directory&gt;User account&gt;Attribute Editor&gt;mail property&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;, sans-serif;&#8221;&gt;Following user data attributes are synchronized between Active Directory and Ansys Gateway&lt;\/span&gt;&lt;ul type=&#8221;disc&#8221;&gt;&lt;li style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&#8221;userprincipalname&#8221;&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;x_MsoListParagraph&#8221; style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&#8221;samaccountname&#8221;&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;x_MsoListParagraph&#8221; style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&#8221;givenname&#8221;&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;x_MsoListParagraph&#8221; style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&#8221;mail&#8221;&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;x_MsoListParagraph&#8221; style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&#8221;displayname&#8221;&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;x_MsoListParagraph&#8221; style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&#8221;name&#8221;&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;x_MsoListParagraph&#8221; style=&#8221;font-size: 10pt;&#8221;&gt;&lt;span style=&#8221;font-size: 10pt;&#8221;&gt;&#8221;distinguishedname&#8221;&lt;\/span&gt;<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<p>&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;To Do: Set up an Organizational Unit (OU)&lt;\/span&gt;<\/strong>&lt;\/p&gt;<\/p>\n<ul>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;You must create an Organizational Unit (OU) to be used for Ansys Gateway operations.&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;On the server hosting Active Directory (AD), open &lt;\/span&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;Active Directory Users and Computers&lt;\/span&gt;<\/strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;.&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;From the &lt;\/span&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;View &lt;\/span&gt;<\/strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;menu, select &lt;\/span&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;Advanced Features&lt;\/span&gt;<\/strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;.&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Right-click your domain and select &lt;\/span&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;New &gt; Organizational Unit&lt;\/span&gt;<\/strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;.&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Specify a name for the Organization Unit that identifies it as OU for Ansys Gateway powered by AWS (for example, &#8220;AGW&#8221;). Make note of the specified name as you will need it later.&lt;\/span&gt;<\/li>\n<\/ul>\n<p>&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span class=&#8221;Heading3Char&#8221;&gt;&lt;span style=&#8221;font-size: 14.0pt;&#8221;&gt;2. A server to host the Ansys Gateway powered by AWS AD Connector service&lt;\/span&gt;&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Have a server ready or create and certify a server to host the Ansys Gateway powered by AWS AD Connector proxy service. The server can be an on-premises machine or VM in AWS Cloud which meets the requirements below.&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;Requirements:&lt;\/span&gt;<\/strong>&lt;\/p&gt;<\/p>\n<ul>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Should be close to the server hosting Active Directory to ensure fast communication with that server&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Operating System: Windows Server 2016 or later&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Port 16402 incoming must be open between the Ansys Gateway powered by AWS AD Connector server and the VPC&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Ports 389 (LDAP) and 3268 (GC) outgoing must be open between the Ansys Gateway powered by AWS AD Connector server and Active Directory&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Port 443 outgoing must be open between the Ansys Gateway powered by AWS AD Connector server and the Internet&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Certificate specifying the hostname of the Ansys Gateway powered by AWS AD Connector Service and connectivity to validate the certificate&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;!&#8211; [if !supportLists]&#8211;&gt;&lt;!&#8211;[endif]&#8211;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Account with Local Admin rights&lt;\/span&gt;<\/li>\n<\/ul>\n<p>&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif;&#8221;&gt;Note: &lt;\/span&gt;<\/strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;You will download and install the Ansys Gateway powered by AWS AD Connector service in a later step.&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;&nbsp;&lt;\/span&gt;&lt;\/p&gt;&lt;h3&gt;&lt;span style=&#8221;font-size: 18.0pt; line-height: 107%; color: #ffc000;&#8221;&gt;\/ &lt;\/span&gt;&lt;span style=&#8221;font-size: 18.0pt; line-height: 107%;&#8221;&gt;Prepare your AWS environment&lt;\/span&gt;&lt;\/h3&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;To prepare for connecting to Ansys Gateway powered by AWS, you must have the following set up in AWS:&lt;\/span&gt;&lt;\/p&gt;&lt;h5&gt;&lt;span style=&#8221;font-size: 14.0pt; line-height: 107%;&#8221;&gt;1. A Virtual Private Cloud (VPC) for each region in which you want to use Ansys Gateway powered by AWS&lt;\/span&gt;&lt;\/h5&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;A Virtual Private Cloud (VPC) is a pool of shared resources allocated within AWS Cloud. Each VPC is associated with a specific region. This determines the AWS data center that will provision the resources. &lt;\/span&gt;<a href=\"https:\/\/aws.amazon.com\/vpc\/\">&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Learn more about Amazon VPC&lt;\/span&gt;<\/a>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: #0000ed;&#8221;&gt;.&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;<strong>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro SemiBold&#8217;,sans-serif; color: black;&#8221;&gt;Requirements for each VPC:&lt;\/span&gt;<\/strong>&lt;\/p&gt;<\/p>\n<ul>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;From the VPC to the Internet:&lt;\/span&gt;<\/p>\n<ul>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;Port 443 outbound to enable communication to the Ansys Gateway &lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;powered by AWS&lt;\/span&gt; Control Plane and the virtual machines&lt;\/span&gt;<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;Port 22 inbound and port 443 inbound to facilitate connections to the virtual machines&lt;\/span&gt;<\/li>\n<\/ul>\n<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;From the VPC to another VPC:&lt;\/span&gt;<\/p>\n<ul>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;Port 445 inbound\/outbound [Optional for SMB Connectivity]&lt;\/span&gt;<\/li>\n<\/ul>\n<\/li>\n<p>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;From the VPC to the Ansys Gateway &lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;powered by AWS&lt;\/span&gt; AD Connector Service:&lt;\/span&gt;<\/p>\n<ul>&lt;li class=&#8221;MsoNormal&#8221; style=&#8221;line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;Port 16402 outbound to enable communication with the Ansys Gateway &lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;powered by AWS&lt;\/span&gt; AD Connector Service&lt;\/span&gt;<\/li>\n<\/ul>\n<\/li>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;Standard connectivity to Active Directory including port 389 for domain join connectivity&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;At least one subnet&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;DNS connectivity&lt;\/span&gt;<\/li>\n<li>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;AWS EC2 Service Quotas for provisioning instances in the associated region&lt;\/span&gt;<\/li>\n<\/ul>\n<p>&lt;p&gt;&nbsp;&lt;\/p&gt;&lt;h5 class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 14.0pt; line-height: 107%;&#8221;&gt;2. Established connection between local network and VPC&lt;\/span&gt;&lt;\/h5&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: black;&#8221;&gt;There must be a secure and private connection between your local network and the AWS Virtual Private Cloud.&nbsp; AWS recommends site-to-site VPN or Client VPN. &lt;\/span&gt;<a href=\"https:\/\/aws.amazon.com\/vpn\/\">&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif;&#8221;&gt;Learn more about Amazon Virtual PrivateNetwork&lt;\/span&gt;<\/a>&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: #0000ed;&#8221;&gt;.&lt;\/span&gt;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&nbsp;&lt;\/p&gt;&lt;p class=&#8221;MsoNormal&#8221; style=&#8221;margin-bottom: 0in; line-height: normal;&#8221;&gt;&lt;span style=&#8221;font-size: 11.5pt; font-family: &#8216;Source Sans Pro&#8217;,sans-serif; color: #0000ed;&#8221;&gt;Updated August 3, 2023&lt;\/span&gt;&lt;\/p&gt;<\/p>\n","protected":false},"template":"","class_list":["post-240040","topic","type-topic","status-closed","hentry","topic-tag-aws-amazon","topic-tag-cloud","topic-tag-gateway"],"aioseo_notices":[],"acf":[],"custom_fields":[{"0":{"_bbp_author_ip":["23.220.96.180"],"_bbp_subscription":["4655","270780","16715","19040"],"_btv_view_count":["7093"],"_bbp_likes_count":["5"],"_bbp_status":["publish","answered"],"_bbp_topic_status":["answered"],"_edit_last":["31105"],"_bbp_revision_log":["a:1:{i:387183;a:2:{s:6:\"author\";i:31105;s:6:\"reason\";s:0:\"\";}}"],"_bbp_topic_id":["240040"],"_bbp_forum_id":["233598"],"_bbp_engagement":["4655","16715","19040","270780"],"_bbp_voice_count":["4"],"_bbp_reply_count":["3"],"_bbp_last_reply_id":["283968"],"_bbp_last_active_id":["283968"],"_bbp_last_active_time":["2023-05-15 10:27:05"]},"test":"akumar"}],"_links":{"self":[{"href":"https:\/\/innovationspace.ansys.com\/forum\/wp-json\/wp\/v2\/topics\/240040","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/innovationspace.ansys.com\/forum\/wp-json\/wp\/v2\/topics"}],"about":[{"href":"https:\/\/innovationspace.ansys.com\/forum\/wp-json\/wp\/v2\/types\/topic"}],"version-history":[{"count":3,"href":"https:\/\/innovationspace.ansys.com\/forum\/wp-json\/wp\/v2\/topics\/240040\/revisions"}],"predecessor-version":[{"id":387183,"href":"https:\/\/innovationspace.ansys.com\/forum\/wp-json\/wp\/v2\/topics\/240040\/revisions\/387183"}],"wp:attachment":[{"href":"https:\/\/innovationspace.ansys.com\/forum\/wp-json\/wp\/v2\/media?parent=240040"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}