Solved

Which VLAN to include ESXi hosts

Posted on 2014-11-07
9
244 Views
Last Modified: 2014-11-10
We are designing a new network model and I want to ensure that my network is modeled after best practices.

vlan 5 - network devices

vlan 10 - servers (VMs)

Which vlan should I be putting my esxi hosts into? Please provide a reference. I've looked for documentation that talks about this and can't find anything.
0
Comment
Question by:Paul Wagner
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 4
9 Comments
 
LVL 121
ID: 40429464
If it's being managed by vCenter Server, which VLAN would this server be in?

VLAN 10 ?

So put the hosts in a Different Management VLAN - 1!
0
 
LVL 5

Author Comment

by:Paul Wagner
ID: 40429525
vCenter will be in vlan10 with the other servers.
Is the vCenter server supposed to be in a different VLAN than the hosts?
0
 
LVL 121

Accepted Solution

by:
Andrew Hancock (VMware vExpert / EE MVE^2) earned 500 total points
ID: 40429532
Okay, well in that case the Hosts need to be in VLAN10.

Some organisation put vCenter in a different VLAN,

BUT the Fact it has to be managed by vCenter and has that requirement, makes it difficult!

and therefore it must be in the same VLAN as vCenter Server.
0
Is your NGFW recommended by NSS Labs?

Ours is! NSS Labs Next Generation Firewall Test gives the WatchGuard Firebox M4600 a "Recommended" rating! Curious where your NGFW landed on the  Security Value Map? See the map and download the full report today!

 
LVL 5

Author Comment

by:Paul Wagner
ID: 40429998
Understood. Do you know where I can find documentation on this? I haven't been able to find anything in KB VMware.
0
 
LVL 121
ID: 40430103
As far as I know I've not seen any documentation on this, because it's common sense!

Both Host and Management server would need to be reachable on the network, and communicate between them should be ok.

If you want to read more on networking in VMware ESX/ESXi, then I recommend the following:-

I would also recommend reading through the Networking Sections of the following guides to gain a better understanding of Networking in VMware ESX/ESXi.

Pages 13 - 73 Discuss Networking in Detail, including trunks, VLANs, switches, and load balancing

ESXi Configuration Guide ESXi 4.1

http://www.vmware.com/pdf/vsphere4/r41/vsp_41_esxi_server_config.pdf

Virtual Networking

http://www.vmware.com/technical-resources/virtual-networking/virtual-networks.html

Virtual Networking Concepts

http://www.vmware.com/files/pdf/virtual_networking_concepts.pdf
0
 
LVL 5

Author Comment

by:Paul Wagner
ID: 40433783
@Andrew Hancock

Just wanted to ask a follow up question- Is it ok to include my tertiary (end-user) switches in the same VLAN as vCenter and the hosts or do they need to be separate. We're talking about an infrastructure of less than 300 users.
0
 
LVL 121
ID: 40433807
You can include them in the same VLAN or seperate.

It depends on how many IP Addresses, and subnet you have available for your servers.
0
 
LVL 5

Author Comment

by:Paul Wagner
ID: 40433968
I'll have enough IP's in the range. Just didn't know if it was a best practice to separate them. I'd rather keep them together for simplicity, unless of course there was some conflict or design reason not to.

Thanks!
0
 
LVL 121
ID: 40433975
Keep them together.
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
HOW TO: Upload an ISO image to a VMware datastore for use with VMware vSphere Hypervisor 6.5 (ESXi 6.5) using the vSphere Host Client, and checking its MD5 checksum signature is correct.  It's a good idea to compare checksums, because many installat…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…
In this video we outline the Physical Segments view of NetCrunch network monitor. By following this brief how-to video, you will be able to learn how NetCrunch visualizes your network, how granular is the information collected, as well as where to f…

729 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question