Solved

Vmware Isolate VM's but allow access to servers

Posted on 2012-03-19
8
389 Views
Last Modified: 2016-11-23
Hello Experts,

I'm trying to accomplish a task in my lab where a number of VM's cannot communicate with each other but can talk to a group of servers and access the internet.

Currently I have 2 physical servers running ESXI 5 with Vsphere essentials (Standard vswitch).

I'm curious to see if anyone has some ideas how to accomplish this without doing the following:

1: Dedicating physical nics to VM's
2: Purchasing a license to support Vmware Distributed Switch

The firewall I have available is a Sonicwall NSA2400 and I have a Dell Powerconnect managed switch.

Each physical server has 4 available nic ports.

I've attached a PDF to show a basic example of what I'm trying to accomplish.

Thanks!
vlan.pdf
0
Comment
Question by:kinetik20
8 Comments
 
LVL 117

Expert Comment

by:Andrew Hancock (VMware vExpert / EE MVE)
Comment Utility
why not use a virtual router?
0
 
LVL 4

Author Comment

by:kinetik20
Comment Utility
Hanccocka,

I was just reading about that!

Can you give any suggestions as to which to try and are there any adverse effects?
0
 
LVL 117

Assisted Solution

by:Andrew Hancock (VMware vExpert / EE MVE)
Andrew Hancock (VMware vExpert / EE MVE) earned 250 total points
Comment Utility
Monowall, Freesco and Vyatta.

They all work very well.
0
 
LVL 4

Expert Comment

by:R3C0N
Comment Utility
I used this link quite a bit when setting up my lab. May not fit your requirements in whole but may spark an idea, for you to try.

http://www.cisco.com/en/US/docs/solutions/Enterprise/Data_Center/vmware/VMware.html

-R3con
0
Backup Your Microsoft Windows Server®

Backup all your Microsoft Windows Server – on-premises, in remote locations, in private and hybrid clouds. Your entire Windows Server will be backed up in one easy step with patented, block-level disk imaging. We achieve RTOs (recovery time objectives) as low as 15 seconds.

 
LVL 4

Author Comment

by:kinetik20
Comment Utility
Thanks so much for the information. I'll check everything out and see what I come up with.

How does using a virtual router stack up in a production environment? I can't think of any issues it would cause off hand?
0
 
LVL 117

Expert Comment

by:Andrew Hancock (VMware vExpert / EE MVE)
Comment Utility
I would select Vyatta for production, its a commercial product, with support rather than freeware
0
 
LVL 10

Accepted Solution

by:
172pilotSteve earned 250 total points
Comment Utility
Also, if the four machines on the right side of your picture can't talk to each other, then you'll need to setup a separate port group for each of the servers...  Likely that these can be on separate standard switches with no uplink, and then whatever virtual router you will use should have one of it's "LAN" side ports connected into that port group.
0
 
LVL 4

Author Comment

by:kinetik20
Comment Utility
Thanks 172pilotsteve.

I'm not sure this lab environment is going to translate into a working production environment.

I should have been more detailed in the Drawing I attached. I'm not seeing how VM's could on one physical host could be connected to a standard vswitch on another host.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Join & Write a Comment

This article will show you how to create an ISO CD-ROM/DVD-ROM image (*.iso), and MD5 checksum signature, for use with VMware vSphere Hypervisor 6.5 (ESXi 6.5). It's a good idea to compare checksums, because many installations fail because of a corr…
HOW TO: Upload an ISO image to a VMware datastore for use with VMware vSphere Hypervisor 6.5 (ESXi 6.5) using the vSphere Host Client, and checking its MD5 checksum signature is correct.  It's a good idea to compare checksums, because many installat…
Teach the user how to join ESXi hosts to Active Directory domains Open vSphere Client: Join ESXi host to AD domain: Verify ESXi computer account in AD: Configure permissions for domain user in ESXi: Test domain user login to ESXi host:
This video shows you how to use a vSphere client to connect to your ESX host as the root user. Demonstrates the basic connection of bypassing certification set up. Demonstrates how to access the traditional view to begin managing your virtual mac…

771 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

14 Experts available now in Live!

Get 1:1 Help Now