Building your AppGate Infrastructure
The first Appliance in any AppGate ZTNA Collective must be a Controller. Once you have deployed and configured the first appliance (the Controller), additional appliances can be created and activated from the Admin UI.
Installing the first appliance, however, requires a different process and this section takes you through the process of starting an appliance on your chosen platform and then configuring it with your initial settings. By following this process, you will get a network-connected, active Controller, and access to the Admin UI so you can get on with adding other appliances and provisioning secure access for users.
Pre-installation Checklist
Before diving into installation, it's essential to complete a pre-installation checklist*. This ensures that all necessary prerequisites are met, minimizing potential issues during the installation process.
*Admin Guide - Pre-Installation consideration link.
Review minimum information for implementation.
Virtualization platforms you plan to host appliances on.
Virtualization Resources (CPU/MEM/SDD)
Networking (IP, Mask, GW, DNS, Routes)
Security (Firewall Ports) - Hostnames (FQDN public & private)
IdP (Identity provider) - Check Implementation Scope (Design Document)
Or refer to the pre-installation survey document shared during POE or initial design calls.
Download Appliance Image
Before you download and start building, we recommend you review the latest release notes to understand all the significant changes this version has.
Admin Guide - Latest Release Note link.
The Appliance comes with a built-in 2 users, 1 default Site license, enabling you to start the basic configuration of the system prior to receiving your full Production License.
AppGate ZTNA Download Center link.
If you're opting for a Cloud deployment, you can find us on major cloud marketplaces like AWS, Azure, and GCP.
Resource Guide link.
VM Installation (First Controller)
Begin the installation process by setting up the first virtual machine (VM) controller as per your infrastructure design. This controller will serve as the core of your infrastructure.
Once the VM controller is in place, perform the initial configuration. This step includes defining network settings, security parameters, and other essential configurations.
Using a Hypervisor
1. Create VM
2. Mount AppGate ISO on VM.
3. Boot the ISO and access the VM web console.
4. Select the "Install AppGate" option.
5. Use the interactive menu (cz-setup) to configure the Controller.
Note: You must remove CD Drive from VM to remove the warning message in the AppGate Dashboard.
Resources
vSphere Guide link.
Hyper-V Guide link.
Initial Configuration - Run: "sudo cz-setup"
Configure Hostname
Network Interface
Routes
DNS's
NTP (optional)
CZ password (*this is for ssh login), Admin Password (for web UI login).
Apply Configuration
Your Admin Web-UI
After the initial configuration, connect to the Web User Interface (WebUI) to access the management interface. The Web UI is where you manage and monitor your AppGate ZTNA infrastructure.
https://myserver:8443/ui
Username: admin
Password: Same as you configured in the previous step.
You can also use the IP address to access the admin UI if DNS is not yet ready.
e.g. https://<ip address>:8443/ui

Login Screen

Admin UI