Placing Web & App servers (VM) in the same or different VLANs
Posted on 2013-01-14
I have 16 IIS Web servers (on VMs running Win 2008 R2 Std) &
8 App (Appfabric, MS HL7) servers (on VMs running Win 2008 R2 Std).
I'm deciding whether to place them on same VLAN/subnet Or
Web servers on one VLAN/subnet (ie DMZ zone) & the App on
another (ie App zone).
Is MS HL7/Appfabric considered app servers or people generally
treat it as web?
There's quite a number of communications (persistent & non-
persistent) between the Web & the HL7/Appfabric (& several
other inhouse developed HL7 and .Net apps) & I'm thinking
if I could justify to place all of them into one single DMZ zone.
Is this a good idea?
By placing them in different zones/VLANs, anyone foresee any
issue in the VMware/ESXi setup/configuration? All the 16+8
VMs are running on 5 ESXi hosts. Guess, I'll need to permit
both DMZ & App zones on the trunked ports of the switches
that the ESXi hosts are connected to. Anything else?