Connection a vmWare Server Host to both DMZ and Internal LAN
Posted on 2011-10-20
I'm a vmware vsphere 5 newbie. But have been working with vmware workstation and server for a while.
I have four physical servers that host 50 virtual servers. Everything is licensed on vmware 5 Enterprise Plus Edition.
vmWare vCenter 5 is set up properly. Advanced features such as DRS, vMotion and so on have not been enabled yet.
For now I just need some help with basic configuration.
Vmware network is configured with a single virtual switch, the one that comes out of the box. I don't have much experience with vmware virtual networking. Every physical server has 6 gigabit ethernet connections.
Physical servers are running ESXi 5.
Everything is up and running smoothly.
Now I need to connect these physical servers to DMZ since there are some vm's that should run on that part of our network.
How should I do that?
Should I connect one nic from each server to the DMZ swtich, since we shall have virtual machines from any of these servers running on DMZ? Besides that, how should I set up vmware networking? Should I create a new virtual switch? How do i do that? What are you guys doing out there?
How about vLANS? Can it be set up and span multiple subnets so I can keep all servers connected to internal LAN?
What about the security questions that will be raised when connecting the server both to internal LAN and DMZ? Can't it be explore by a hacker to bypass all security polices enforced at the firewall box?
Thanks in advance.