Vmware Isolate VM's but allow access to servers

Hello Experts,

I'm trying to accomplish a task in my lab where a number of VM's cannot communicate with each other but can talk to a group of servers and access the internet.

Currently I have 2 physical servers running ESXI 5 with Vsphere essentials (Standard vswitch).

I'm curious to see if anyone has some ideas how to accomplish this without doing the following:

1: Dedicating physical nics to VM's
2: Purchasing a license to support Vmware Distributed Switch

The firewall I have available is a Sonicwall NSA2400 and I have a Dell Powerconnect managed switch.

Each physical server has 4 available nic ports.

I've attached a PDF to show a basic example of what I'm trying to accomplish.

Thanks!
vlan.pdf
LVL 4
kinetik20Asked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Andrew Hancock (VMware vExpert / EE MVE^2)VMware and Virtualization ConsultantCommented:
why not use a virtual router?
0
kinetik20Author Commented:
Hanccocka,

I was just reading about that!

Can you give any suggestions as to which to try and are there any adverse effects?
0
Andrew Hancock (VMware vExpert / EE MVE^2)VMware and Virtualization ConsultantCommented:
Monowall, Freesco and Vyatta.

They all work very well.
0
Acronis Data Cloud 7.8 Enhances Cyber Protection

A closer look at five essential enhancements that benefit end-users and help MSPs take their cloud data protection business further.

R3C0NCommented:
I used this link quite a bit when setting up my lab. May not fit your requirements in whole but may spark an idea, for you to try.

http://www.cisco.com/en/US/docs/solutions/Enterprise/Data_Center/vmware/VMware.html

-R3con
0
kinetik20Author Commented:
Thanks so much for the information. I'll check everything out and see what I come up with.

How does using a virtual router stack up in a production environment? I can't think of any issues it would cause off hand?
0
Andrew Hancock (VMware vExpert / EE MVE^2)VMware and Virtualization ConsultantCommented:
I would select Vyatta for production, its a commercial product, with support rather than freeware
0
172pilotSteveCommented:
Also, if the four machines on the right side of your picture can't talk to each other, then you'll need to setup a separate port group for each of the servers...  Likely that these can be on separate standard switches with no uplink, and then whatever virtual router you will use should have one of it's "LAN" side ports connected into that port group.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
kinetik20Author Commented:
Thanks 172pilotsteve.

I'm not sure this lab environment is going to translate into a working production environment.

I should have been more detailed in the Drawing I attached. I'm not seeing how VM's could on one physical host could be connected to a standard vswitch on another host.
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
VMware

From novice to tech pro — start learning today.