6.2

Table Of Contents
9 Log out of the Endpoint VM.
What to do next
Set up a cloud tunnel for Amazon EC2 deployments to communicate with the Application Services server.
See Create a Cloud Tunnel to Connect to Amazon EC2.
Create a Cloud Tunnel to Connect to Amazon EC2
You must create and enable a cloud tunnel instance so that deployments in the Amazon EC2 VPC can
communicate with the Application Services server.
Your network from Application Services to the Endpoint VM should have a minimum upload bandwidth of
1Mbps for every Amazon EC2 instance that is deployed. For faster downloads, store your applications on
the Amazon Simple Storage Service instead of downloading them from the Application Services
appliance over the cloud tunnel.
Prerequisites
n
Log in to Application Services as an application cloud administrator.
n
Verify that the Endpoint VM is properly set up and configured. See Configure Amazon EC2
Environment for Application Services.
n
Verify that the elastic IP address and the private IP address of the Endpoint VM are readily available.
n
Verify that the private key for the Endpoint VM is available to establish a cloud tunnel from the
corporate network to the Endpoint VM.
n
Determine whether a proxy server is required to access Amazon EC2 from the network where
Application Services is running.
The proxy server or the network must permit access to the standard SSH port 22 outside the network.
n
Start the Application Services CLI. See Start the CLI Remotely.
Procedure
1 Use the SSH client to copy the downloaded private key file for the Endpoint VM to the Application
Services appliance and copy the file to the /tmp directory.
2 In the roo shell, create a secure cloud tunnel instance.
create-cloud-tunnel --name TunnelName --description "TunnelDescription" --enabled false --
externalAddress EndpointVMElasticIP
--sshPort 22 --internalAddress EndpointVMPrivateIP --proxyUrl ProxyURl --username ec2-user --
privateKeyPath PrivateKeyFilePath
You can use the --sshPort parameter to designate a port other than 22. The --proxyUrl is an
optional parameter that you can specify the proxy server to use to connect to the Endpoint VM.
Using Application Services
VMware, Inc. 93