Best use of multiple NICS (collaborate with VIRTUAL networks or physcially separated)

Set up my new production environment vSphere and trying to figure out the best way to set up the network.  I have pictures to illustrate, but the basic question is:

1. use all NICS in a pool and VLANS to separate traffic - or -

2 devote some physical nic to only certain things (VMotion, FT etc..)

We use Dell R710 2 servers with 6 NIC of each.

Our SAN is connected via zFCP iSCSI, see you in the group is therefore only for failover of emergency if environmental FC had to leave for some reason any.

Please let me know which design you think would be the best.

Thank you

Michael

Hello

Everyone says to separate the service of the VMnetwork console.  If I can separate the traffic of service with one console vlan why separate physically?  If something happens to the service console connection disconnects but my machines always communicate then I would have trouble.  Why not make sure that if the network paths are for machines that I can control the server VM?

Your VMNetwork is one of network environments more hostile within the vNetwork as its arbitrariness and a point of attack if someone breaks into a virtual machine. If you have the virtualization management network attached to your VMNetwork is on, there is a VERY good chance that the pirate VM now will be used to launch an attack against the network of virtualization management. Given the current set of attacks there is a VERY good chance of success. For security reasons, you want your management network virtualization to be separated and protected by a firewall of any other physical and virtual network. Ideally on its own switches with output physical switch VLAN in use. However if you use VLAN physical switch then you put your trust in these spending patterns, so you want to increase your monitoring of these switches.

Since the original post, I combined the iSCSI traffic because it is a failover of emergency only where my zFCP hardware has a problem.  The iSCSI link rarely go to never get used and I didn't spend 2 physical network cards to something that would almost never be used.

You want to spend 2 links for iSCSI, if you still do not have a failover, you can the bandwidth and redundancy. Consider all the links of storage redundancy.

Let me know what you think on the service console.

When you use VLANS in the vNetwork you are automatically protected against most known layer 2 attacks, but in the pNetwork you are confident that your switch configurations you will protect. These configurations have been known to change and not necessarily for the better. Some say, it must break so for that to happen, but 1 problem of configuration and your SC is now attacked. Remember, once the virtualization management networks can be attacked they can probably be broken. I know a pen-Tester, which can do that in a very short time, and they will have your virtual environment.

Protect the machine from service/management console, Client vSphere, vCenter servers as if they were gold, access to them implies access to almost everything. That's why VMware strongly recommends that you create another network of virtualization management a firewall of all systems on your system. That within this firewall that place you jump machines that run all vSphere SDK and vSphere client and that you use something like RDP to access these tools without their execution through your firewall. Make this thing increases the security of your global virtual environment of giant protecting your investment in the current batch of management network attacks. VLANs are not a security tool, they are a tool of separation of network based on the pNetwork is correctly configured, maintained and checked. VLAN security is based on the confidence in your pSwitches not something that is authoritative.

Best regards
Edward L. Haletky VMware communities user moderator, VMware vExpert 2009, 2010

Now available: url = http://www.astroarch.com/wiki/index.php/VMware_Virtual_Infrastructure_Security'VMware vSphere (TM) and Virtual Infrastructure Security' [/ URL]

Also available url = http://www.astroarch.com/wiki/index.php/VMWare_ESX_Server_in_the_Enterprise"VMWare ESX Server in the enterprise" [url]

Blogs: url = http://www.virtualizationpractice.comvirtualization practice [/ URL] | URL = http://www.astroarch.com/blog Blue Gears [url] | URL = http://itknowledgeexchange.techtarget.com/virtualization-pro/ TechTarget [url] | URL = http://www.networkworld.com/community/haletky Global network [url]

Podcast: url = http://www.astroarch.com/wiki/index.php/Virtualization_Security_Round_Table_Podcastvirtualization security Table round Podcast [url] | Twitter: url = http://www.twitter.com/TexiwillTexiwll [/ URL]

Tags: VMware

Similar Questions

  • Multiple NICs on a virtual single linux machine

    It seems like it should be simple, but when I assign two adapters for a virtual machine linux simple, the virtual linux machine stops as soon as it finishes the set-up and the fact over and over again endlessly.   He made a clean shutdown, I look at the console, I see it start to stop all the services at the time wherever he gets all a started.

    It started as soon as I added a second network adapter, and the problem disappeared as soon as I removed the network card.

    What I'm trying to do, is to have a second network adapter on a separate network that I use to communicate with one another physical machine on my network using a static internal ip address.

    I have set up a separate virtual switch, which possesses the second network card are entrusted to him.   There is only a single guest that uses this adapter.    Does anyone have any ideas why this would cause CentOS5 keep close and restart constantly?

    Sorry, in my previous message, actually one-liner I wasn't very clear.

    I mean, what happens when you configure the virtual computer with a second NETWORK adapter, and then restart the virtual machine in Single-user Mode od recovery mode?

    Is the virtual machine responds the same way or not?

    The idea is to start the VM with less service so that it continues to run and you will be able to do research on the second NETWORK card

    Paul Grevink

    Twitter: @PaulGrevink http://twitter.com/PaulGrevink

    If you find this information useful, please give points to "correct" or "useful".

  • Help with virtual network Editor

    I would like to make what follows but don't know how to do it.

    I have my main network configured as follows

    IP 192.168.100.x

    Subnet 255.255.255.0

    Gateway 192.168.100.254

    I have vmware workstation installed with 2 servers. I would like to have these server configured in the following manner and be able to get out on the internet via my main network

    IP 192.168.200.x

    Subnet 255.255.255.0

    Entry door?

    Any help would be great.

    Thanks in advance

    This means that you must configure the network for vmnet8 to 192.168.200

    assign vmnet8 virtual machines

    _________________________

    VMX-settings- WS FAQ -[MOAcd | http://sanbarrow.com/moa241.html]- VMDK-manual

  • Tolerance of failure with multiple NICs

    Apologize if this has been asked before.

    I'll put up a vSphere 5.5 environment and I have NIC 1 GB for each host to devote two NICs per host for tolerance to failures.  I was wondering the best way to set this up to their maximum output.  I have implemented as a Multi - NIC Vmotion?  As noted here: VMware KB: Multiple-NIC in vSphere vMotion 5. Essentially using two groups of ports as FT-1 and FT-2.  Or what I need to do as a Multi-NIC iSCSI with separate vswitches and each vswitch with a Port Group.

    Thanks in advance.

    You run into a problem of flow when you use 1 NIC for FT?

    Currently FT only supports using a single network adapter (1 G or 10 G)

  • Best network design... Need advice on the best use of NIC

    I'm new to the concept of Distributed Switch so I need advice.

    Our current environment is the result of a vCenter 4.1 and ESXi 4.1 Enterprise Plus, but we are just using the standard vSwitch (1 for vMotion/Console and 1 for virtual machines).  When the distributed switch came out, we were warned that a vDSwitch could cause us problems if the server vCenter or database is down.  We could not connect directly to the host and make network changes because the vDSwitch is set in the database.  That's why we stayed with the Standard vSwitch only.

    Our farm is quite small, only 5 hosts but we run around 100 mV in this regard.

    We use currently servers HP DL385 G7, which have 4 cards integrated network, and we have a map of installed NETWORK 4 port card.

    I use the NETWORK 4 EtherChannel ports and trunk card to our virtual machines.

    I am currently using only 1 network card integrated for vMotion and 1 for the Service Console and they all have two of the other defined as secondary.

    This configuration has worked very well for us, but I realize that the latest version of ESXi has some new features that we could use.

    NEW CONFIGURATION

    I'll put up a new vCenter 5 and ESXi 5 environment and I am considering using the switch distributed instead of the usual vSwitch we use.  I'm also eager to take advantage of the multiple NIC vMotion.  All our cards are 10/100/1000 MB capable... No. 10 GigE.

    I think... use that map 4 NETWORK ports for my EtherChannel/trunk for just as our virtual machine before, but this would be set to vDSwitch1

    The mixture of my 4 other integrated ports, it's causing me grief.  Should they be on a standard vSwitch or vDSwitch?  Use 2 ports for vMotion and 2 for the Console?  I really thought to use 3 ports for vMotion and 1 Console port.  I could put the Console port to use one of the vMotion ports such as adapter of standby is... I'm so confused freaking!

    Any recommendations on how I should put up?

    Hello

    Given that you can't split your vmnic for each vSwitch I would recommend either keep configuration simular with the knoweldge if a whole nic fails, you will take a failure or as autumn has already been mentioned on 'Origin Port ID'. Lets do this out and give a little better example

    Current configuration

    vSwitch0

    VMNIC0 - NETWORK interface integrated - Service Console

    VMNIC1-Onboard NIC - VMotion (different IP or VLAN?)

    VMNIC2-Onboard NIC - VMotion (different IP or VLAN?)

    VMNIC3 - NETWORK interface integrated - VMotion (eve of Console of Service) (different IP or VLAN?)

    vSwitch1

    VMNIC4 - extension PCI NIC - Etherchannel trunk - PortGroup - VMNET

    Extension VMNIC5 - PCI NIC Etherchannel trunk-PortGroup - VMNET

    Extension VMNIC6 - PCI NIC Etherchannel trunk-PortGroup - VMNET

    Extension VMNIC7 - PCI NIC Etherchannel trunk-PortGroup - VMNET

    Now, to captured to eliminate any single point of failure that you could do is break your Etherchannel trunk and back this vSwitch from Port ID and Setup VMNIC2, VMNIC3, VMNIC4, VMNIC5 as vSwitch1 for your VMNET. Then the cable to multiple switches eliminate any single point of faiulre. If your standard configuration would look like this

    vSwitch0

    VMNIC0 - on - Board Service Console

    VMNIC1 - Board - Vmotion

    VMNIC6 - extension PCI NIC - Vmotion

    VMNIC7 - extension PCI NIC - Vmotion (standby Service Console)

    vSwitch1

    VMNIC2 - VMNET

    VMNIC3 - VMNET

    VMNIC4 - VMNET

    VMNIC5 - VMNET

    So to finish any request for psyhical nics on this particular configuration the Port ID of origin essentially around robins. If during your first VM is online it will be use VMNIC2 and nic forever, until a failure, in which case he will grab the next nic online. When your second VM is online it will use VMNIC3 forever, until a failure and so on. This still will give you around the same way through to as far as networking is concerned. However if you are attached to the trunk, etherchannel 4 GB and can obsorb a failure in case of failure, the network card 4 ports can stay.

    Distributed switching Setup

    Allows you to see how you can switch to distributed switching

    Let's start first of all, you can have EVERYTHING in switches distributed even the service console port if you wish. The resason why some people do not like to do this with the service console port is because IF your database is broken you cannot make any changes to the distributed switch. However it will not prevent a feature to your distributed it switches simply means, you can change them. Also if just getting worse and your DB has been declining for some time and you REALLY need to make a change to the service console port you can go into the console and change back to a standard vSwitch if need be. This allows the said look at some standard configs, you can work

    vSwitch0 (Standard)

    VMNIC0 - Service Console Port (Port Original ID or standby)

    VMNIC4 - Service Console Port (Port Original ID or standby)

    vSwitch1 (Standard)

    VMNIC1 - Vmotion

    VMNIC5 - Vmotion

    Distributed switch

    VMNIC2 - VMNET

    VMNIC3 - VMNET

    VMNIC6 - VMNET

    VMNIC7 - VMNET

    Now this config using originating port ID and breaks your etherchannel if you want to keep your configuration with the etherchannel it can look like this

    vSwitch0

    VMNIC0 - NETWORK interface integrated - Service Console

    VMNIC1-Onboard NIC - VMotion (different IP or VLAN?)

    VMNIC2-Onboard NIC - VMotion (different IP or VLAN?)

    VMNIC3 - NETWORK interface integrated - VMotion (eve of Console of Service) (different IP or VLAN?)

    Distributed switch

    VMNIC4 - VMNET

    VMNIC5 - VMNET

    VMNIC6 - VMNET

    VMNIC7 - VMNET

    Other changes to the configuration may also put the vmotion in distributed witch the VMNET but you would to VLAN, or you could create a second Distributed switch and put it as long as there are 2 network cards. It can go either way. The main advantage of a distributed switch is that it brings all of your settings with you in any host. So trade ect all your VIRTUAL networks is really easy to reproduce if a new host is brought online, all you have to do is to add the new host network cards in the distributed switch and your config is done. With that in mind lets look at the service console. This console is always configured on EACH Setup program that out you of the box if not that you really need to have these parameters transported on several hosts that is another reason why most people just don't. VMotion is up to you, I have seen and configured two ways, it all depends on how simple you want to keep it or think of switching / vlaning / port of groups.

    If you have any questions please let me know, I hope this has helped

  • Create multiple virtual machines with 2 network cards

    Hey guys -.

    Been researching some scripts of difference but did not find one who will help me in my situation.

    I'm looking for a script that will allow me to clone model and apply network settings to 2 network cards.

    1 clone Vms + 20 model

    2 Let me send it to a particular lun (using a few LUNS to available)

    3. choose a custom unique specification

    4. apply intellectual property on 2 NICs (primary and backup).

    Any help would be sincerely appreciated.

    Thank you

    Sorry to lose this thread out of my sight.

    What follows is an attempt to meet all the conditions you listed.

    $numberOfVM = 20$baseVMName = "VM"$templateName = "Template"$osCustName = "MyCust"$IPBase1 = "192.168.1."$IPBase2 = "192.168.2."$IPMask = "255.255.255.0"$IPGate1 = "192.168.1.254"$IPGate2 = "192.168.2.254"$IPDns1 = "192.168.1.100"$IPDns2 = "192.168.2.100"
    
    # Target resourcepool$resPool = Get-ResourcePool -Name Resources
    
    # Get the template$template = Get-Template -Name $templateName
    
    # Create a copy of the OS Customisation SpecTry {    Get-OSCustomizationSpec -Name tempOSCust |    Remove-OSCustomizationSpec -Confirm:$false -ErrorAction Stop}Catch {}
    
    $osCust = Get-OSCustomizationSpec -Name $osCustName |     New-OSCustomizationSpec -Name tempOSCust -Type NonPersistent
    
    # Clone the number of requested VM1..$numberOfVm | %{    # Find the datastore with the most free space    $ds = Get-Datastore | Sort-Object -Property FreeSpaceGB -Descending |        Select -First 1
    
        # Update the OS Customisation Spec NIC parts with the IP addresses    Get-OSCustomizationNicMapping -OSCustomizationSpec $osCust |    Set-OSCustomizationNicMapping -Position 1 -IpMode UseStaticIP -IpAddress "$IPBase1$_" `        -SubnetMask $IPMask -DefaultGateway $IPGate1 -Dns $IPDns1 -ErrorAction SilentlyContinue | Out-Null
    
        Get-OSCustomizationNicMapping -OSCustomizationSpec $osCust |    Set-OSCustomizationNicMapping -Position 2 -IpMode UseStaticIP -IpAddress "$IPBase2$_" `        -SubnetMask $IPMask -DefaultGateway $IPGate2 -Dns $IPDns2 -ErrorAction SilentlyContinue | Out-Null
    
        # Create the new VM    New-VM -Name "$baseVMName$_" -Template $template -OSCustomizationSpec $osCust `        -Datastore $ds -ResourcePool $resPool  | Out-Null}
    

    The script will create clones of $numberOfVM of the model. The virtual machines will be created at the root of the bunch, and they will be called VM1, VM2...

    The OSCustomizationSpec needs to exist and must have 2 network cards.

    The script finds the data store with more free space to create each virtual computer.

    Addresses IP of NIC are consecutive, for example on NIC1 you get 192.168.1.1, 192.168.1.2... and so on.

    Let me know if you have any questions.

  • How can I force a virtual computer to use a specific physical network adapter in a system with 2 network cards?

    I have a host with 2 network cards system.   I have a NETWORK card for the host computer to connect to my domain.  I have a virtual machine that is a deployment server Windows running Windows 2008 server.   The second NIC is to come and turn off the host machine and will then go to a CIsco 3550.   I need the server VM to use deployment only the second NETWORK card and does not communicate the 1st network card that the host uses.

    Can someone please help?  I'm new to VMware.   The original virtual machine on an esx server and was then converted to VMware server 2.

    Yes, just run the network on this host Editor as well.

  • PIX 515e, multiple VIRTUAL networks on a physical interface to DMZ

    We try to set up multiple VIRTUAL networks on a physical interface to the DMZ on a PIX 515e.

    The goal is to have logical subnets linked to our single, physical interface DMZ.

    Here's what I've tried so far without success:

    The switch

    -created the vlan 30

    -added switchports fa0/1 to 30 of vlan

    -attached host 192.168.100.1 in fa0/1

    -added switchport fa0/24 to the vlan 1 and vlan 30 with multimode

    -interface PIX DMZ connected to fa0/24 switchport

    -attached host to switchport fa0/10 172.16.1.55 (vlan 1)

    PIX:

    Auto interface ethernet2

    logical ethernet2 vlan30 interface

    nameif DMZ security50 ethernet2

    nameif vlan30 dmz2 security50

    address IP DMZ 172.16.1.254 255.255.255.0

    IP address dmz2 192.168.100.254 255.255.255.0

    Results:

    -172.16.1.55 has full connectivity to the PIX and beyond.

    -192.168.100.1 cannot ping the PIX to the 192.168.100.254 or anything else besides.

    Any help would be greatly appreciated. Also, I realize that I could buy a four port NIC and use the physical interfaces, but I can't get the approved purchase.

    Thank you

    Creation of VLANS on Ethernet1

    We want to create a new interface VLAN - VLAN30 and name DMZ2. Also affect the security level 50 in it.

    Step 1: Create a physical Interface:

    PIX (config) # interface ethernet1 vlan2 physical

    Step 2: Name the Interface and set the security level:

    PIX (config) # nameif ethernet1 inside the security100

    Step 3: Assign the IP address of the interface:

    PIX (config) # ip inside 192.168.1.1 address 255.255.255.0

    Step 4: Create the logical Interface:

    PIX (config) # interface ethernet1 vlan30 logical

    Step 5: Name of the Interface and set the security level:

    PIX (config) # nameif vlan30 DMZ2 security50

    Step 6: Assign IP address to the interface:

    IP pix (config) # DMZ2 192.168.100.254 255.255.255.0

    Step 7. Switch, set the port where from the inside, to the Isls or dot1q physical interface. Place the sheath in the native vlan2 as in step 1.

  • Multi-NIC vMotion with ESXi/vCenter 4.1

    We take running ESXi and vCenter 4.1 and after the secure Channel secure Channel 5.5 class and sitting for my exam in a few weeks, I have actively tried to improve our environment. Previously, to the study and trying to learn more about VMware, we were in pretty bad condition. Relevant material (AMD, Intel CPU, generations of Intel CPU, amount of RAM and CPU), versions hyperviosr Mismatched ESXi and ESX and no redundancy, vmotion and TONS of snapshots as backups.

    In the two weeks since my course, I have eliminated all snapshots (performance daily vCheck to check on the health of the venvironment), emigrated to 5 similar hosts (and memory/cpu configurations) that we had to drag do not, connected to all ports card NETWORK 6 to 2 x 3560g cisco switches and connected the second switch updated ESX to ESXi 4.1 and patched all hosts with Update Manager (nobody used), created the host profiles and compliance on the cluster and hosts, activated DRS and HA, set up a couple of VAPP for STM systems... the list is long

    I still have a lot to learn, but now I'm a bit confused about one thing...

    We use Fibre Channel SAN, one side get our second Fibre Channel switch hooked up for redundancy and I guess that Multi - pathing (?) I have a couple questions question...

    1. set up the second fiber switch would give me several warehouses of data, correct paths?

    2 can I create and separate vMotion in our configuration, using the CF WITHOUT? Any flow of traffic (for vmotion) through the vswitches or he remains behind the FC switch?

    -I know with iSCSI, you want to create a vSwitche separated and installation multi-nic vmotion

    3. in the configuration of the redundant management interfaces do I need to create two vSwitches with vmkernel with separate IP addresses management ports or just create on vSwitch with a vmkernel port and two network cards is assigned to the (two different connected to 2 physical switches physical cards)?

    -We will most likely use VST if we can get the trunk ports to pass traffic defaullt VLAN, so I think it is still acceptable to create separate vSwitches for management, vMotion (if necessary because of the CF) and port VM group? The designs I see online usually use only a vSwitch for VST and multiple is.

    That's all I can think of for now... Just some things that need to be clarified on... I guess I still need a vSwitch vMotion (allocate 2 of 6 network adapters in it) because some type of traffic would pass over him, but I think that most of the vMotion and all the SvMotion would remain behind the FC switch.

    Thanks for any help!

    With regard to the topic of discussion: Multi-NIC vMotion introduced with vSphere 5.x and is not available in earlier versions.

    1.) Multipathing is not related the number of FC switches, but only for the number of initiator and target. However, using several CF toggle availability increases due to redundancy.

    2.) you must differentiate here. vMotion is a live VM migration process to other hosts, i.e. only the workload of the migration. vMotion only uses the network. Storage vMotion on the other side generally used storage connections - i.e. the CF in your case - to migrate files/folders to the virtual machine.

    3.) redundancy for management traffic can be reached in several ways. The easiest is to simply assign multiple uplinks (vmnic) to vSwitch network management. So, a simple 'Netowrk management' will do, and redundancy is made based on recovery of the vSwitch.

    From a design point of view you can use multiple vSwitches for different traffic types, or combine them on a vSwitch by configuring the failover policies for groups (Active/Standby/Unused) port for example.

    André

  • Determine the maximum use of the processor for a virtual computer in the custom user interface

    I want to determine the maximum use of the processor for a virtual computer in the custom user interface.  How can I do this?

    If I use a supermetric, there is no kind of attribute under CPU called "maximum use.

    Certainly, you get points for a long question! Although to be fair, it's probably my fault to feed you so much information to digest at once.

    1. I would say you can do two ways visually. Use the operations > detail view for 'normal ranges' use the upper limit of the normal range as your typical max. You want an absolute peak, add the metric of a graph or observe that highlight high and low watermarks.

    2. There are a lot of ways to display data, but if you want to display a single metric over a period of time, we could use the following widgets [on top of my head]:

    Top - N analysis

    Weather map

    Analysis of distribution of data

    Among these, I think of your desire for a "peak". Who you want real value, which eliminates the weather map. Then, I think that the concept of a 'Summit' and what is the best thing, I think that the 95th percentile... then I came with the widget of data distribution. The decision is ultimately yours given your particular use case.

    3. you can have it apply to several virtual machines - it's just a widget capable of being an independent provider or receiving widget (metrics, DO NOT choose to select resources). Each resource/metric will add to the widget and you can remove them if you like after it is added. You can certainly all the time you visit... It is date and time standard options you have in all the other widgets chart. With the widget data distribution, you want as much time as possible to get an accurate histogram of the cycles of workload.

    4. This is similar to the question above. You can certainly add parameters of individual resource or a DM that summarizes or AVG groups of resources. And as above, the delay is configurable, along with the other graph widgets.

    5. it's part of Q4 - you can sumN or avgN up to any number of resources with a SM, then discovers that SM in the widget of data distribution. When I said container, I mean an application, group resource pool... all that acts as a container parent within the vCOps.

    6. that's correct, SMs calc using data collected last points... aka single period of time. When you are referring to the longest period, I gave you a few examples of the attributes that are composed of several periods of time which are calculated and created by the adapter for VMware vCenter behvaior. In this case, you have the GVA 15 min CPU 1.5; These specific simple mobile GVA can be specific OR a copy using SMs. Next, you will have the chance is to find a way to distribute what you need through a widget [at that time].

    7. the distribution of data is not for export, it is for Visual functions. If you want the data in CSV, just use a typical chart of metrics and export to a csv and calc your own pics, avg, 95th, whatever.

    8. This is a bit of a mix of all your questions, put in place.

    You are right, if you added those 3 VMs, then calc was the 95th of the AVG. Like Q7, you would not export the data of the distribution of data because the raw data points are not - you do not pass the metric to a metric graphics standard and export via csv.

    Take advantage of...

  • Network/DNS/DHCP issues with testlab - virtual network Editor is killing me!

    Hey all - a little new with workstation and have been messing around trying to get this to work for so long, I want to just set up my lab already but can't find the catch here.

    So, here is what I tried to do:

    Have a hand of Windows Server 2008 R2 (Controller/DHCP/DNS/Active Directory domain / IIS) addresses/leases DHCP of an internal network (which means, I want some Windows 7 Ultimate customers to assign IPs to the DC and NOT of VMWare offers integrated DHCP). I want clients to be able to use only one NIC (preferably) and both authenticate to AD and connect to the Internet (so I think I'll pass on DNS to resolve external domains?). I'm having a pretty hard time trying to understand what...

    My physical network is an active router Linksys with DHCP, so them to assign an IP address to the PC that I'm looking for this laboratory-perhaps it is a problem as well and must also be configured or have my VMNet reflecting?

    I tried to use NAT, a bridge connection, etc... and even then, when I got my DC with an active internet connection, how would I configure my clients (Win7 devices) to join the network even on my domain controller is? I tried some configurations in these forums as well, but none seems to for what I'm trying (which seems very simple!). Can anyone offer some advice? I am not opposed to the fresh start. Thanks for taking a peek.

    Here is an example of configuration when all the virtual machines are configured for NAT.

    Virtual network Editor:

    DHCP disabled for NAT

    For an example, I assume that the NAT subnet in 192.168. 100. x. You can change this if you wish.

    DC:

    IP address: 192.168.100.10

    Subnet mask: 255.255.255.0

    Gateway: 192.168.100.2

    DNS server: 127.0.0.1

    Configuration of the DHCP server:

    Range: 192.168.100.150... 200

    Subnet: 255.255.255.0

    Gateway: 192.168.100.2

    DNS server: 192.168.100.10

    The DNS server configuration:

    DNS forwarding to: 192.168.100.2 (for other than the own domain URLS)

    Other servers or systems with static IP settings:

    IP address: 192.168.100.11... 149

    Subnet mask: 255.255.255.0

    Gateway: 192.168.100.2

    DNS server: 192.168.100.10

    Customer:

    Networking will be set to automatic.

    In this way, the domain controller will be the only DHCP and DNS server, but each virtual computer will be able to access directly to the Internet. And because the domain controller is the primary DNS, your ad cannot function properly.

    André

  • Multiple NICs configuration

    Please guys, I could really use some help.  Even after RTFM, I felt how much a noob in fifteen years.

    I had a COMPUTER technician long lost preach the wonders of virtualization for me and I saw the light.  So 2 years later, I'm ready to give it a try on my first production server.  I did a few tracks of practice developing successfully, but I can't reproduce exactly what I feel when I do in production. Specifically associate network.

    I am to convert a VM supported Dell PowerEdge T620 from physical to virtual.  Right now the physical server has a production Oracle database.  It has 2 network cards physical, 1 connected directly to the internet and connected to the internal LAN 1. I use VMConverter and empty the contents of the server to another machine, install VM ESXi 5.1 on the server, and empty the contents of the original server in a newly created virtual machine.  I then created a second VM for use as a file server.  I tested on a separate machine with no problems EXCEPT that... the network settings.  What the hell I do?

    I think (scary) that I need is 1 physical NIC w / 3 internal IP (192.168.0.28 - Oracle, now VM1 original INVESTIGATION period), (192.168.0.29 - new fileserver VM2), (192.168.0.30 - virtual computer management).  The other physical NETWORK adapter should have just the Internet (24.23.x.x) IP address and will be available at VM1 since only the Oracle DB must accessible via the internet.

    Is this sound right and how Devil can I configure it?  I went through the Guides of the network, but I am more confused than ever with groups, ports, distributed switches, standard switches, etc.  Do I still need to go down this path?  My head hurts.

    Thanks for any help.  It's really appreciated.

    Wile E. Coyote - Super Genius

    All network adapters must be attributed to a vSwitch, even if used by only a single virtual machine.

    In your case, you want to do this:

    NIC1--> vSwitch 1-> 1-> NIC on Oracle VM PortGroup (this virtual NETWORK adapter has the IP 24.x)

    Map NETWORK 2-> vSwitch 2-> 2-> NIC on Oracle VM PortGroup (this virtual NETWORK adapter is 192.168.0.x address

    -> NIC on other VM (this virtual NETWORK adapter will have address 192.168.0.x)

    -> vmkernel port (for management - new 192.168.0.x)

    Hope this helps.

  • Can I use VM 2nd NIC to access target on the storage network?

    I'm running ESXi 4.1 on an isolated network iSCSI network storage with 1 NIC physical on the management network, 4 physical network connected to the Production network interface cards, and 4 NIC physical and all my VM is Server 2008 x 64. Until the budget will allow, without my actually are Dell PE 2900 of servers running Windows Server 2008r2 and Microsoft iSCSI Software Target 3.3 with various sizes of PowerVault DAS, which is 15 to. Here's my question regarding this configuration. The environment in which I work in requires the use of an application that needs the access card to a server that has more than 10 TB of structured of maps and images. For the sake of future growth, I decided to go the normal way of iSCSI target as opposed to sharing/server configuration, so I created a 14.5 TB iSCSI Target .vhd and all my data have moved to this location. In addition, I have one of my servers iSCSI Initiator pointing to the target VM (exported snapshot)... through my network of production... where it is mounted as a read-only disc, configured as I need to be and spread my desktop map. This configuration works well, but the fact that my VM accesses the target via my production network is certainly not the way I need it to be installed, I really need to access the network storage iSCSI initiator. Confused yet? I really need to keep my out of the Production Network iSCSI traffic, but so far I have not been able to find a method to add a second NETWORK card on my virtual computer and put it on anything other than the VM network. I have no problem at all with my host ESXi accessing iSCSI target data warehouses that I created on my other AD, but obviously, there are enormous obstacles to the creation of a 14.5 TB data store, while a 14.5 to SAN target is very flexible and easy... now how can I shoot by the storage network team.

    I appreciate the answers really, but I'm composing this House as VMWare communities are blocked on my work network. However, given that the responses are also sent to my email... I will receive them as text and therefore all references to added images etc will have to wait until I get to watch. Answers appreciated text.

    Thank you

    Confused yet?

    Yes, absolutely

    I don't know if your configuration iSCSI in detail, please consider my suggestion carefully. Access the iSCSI virtual machine network directly should be as simple as adding a group of ports 'Virtual Machine' to iSCSI vSwitch and adding another virtual NETWORK card on the computer virtual - attached to the newly swanky group harbour - with an IP address in the range of iSCSI.

    André

  • Virtual Networking with 6 natachasery

    This article written by Edward Haletky shows how to best use the NIC ports on a server with 6 ports:

    pNIC0 - & gt; vSwitch0 - & gt; Portgroup0 (service console)

    pNIC1 - & gt; vSwitch0 - & gt; Portgroup1 (VMotion)

    pNIC2 - & gt; vSwitch1 - & gt; Portgroup2 (storage area network)

    pNIC3 - & gt; vSwitch1 - & gt; Portgroup2 (storage area network)

    pNIC4 - & gt; vSwitch2 - & gt; Portgroup3 (the VM network)

    pNIC5 - & gt; vSwitch2 - & gt; Portgroup3 (the VM network)

    The ESX talk article.  If this should be different for ESXi?

    Also, maybe it's stupid, but I don't understand how he can get all the data in the production of LAN in this scenario.   Should not at least the an of the natachasery be connected to the local network?

    I am currently working on a visio diagram, I'll try to tie it.

    Do not use on the same switches iSCSI, vmotion and management or you create 4 VLANS (2 for iSCSI) and 1 for Vmotion and 1 for the management and port trunk between switch for Vmotion and management VLAN.

    In any case for a BETTER conservation perforormance use only dedicated switches for iSCSI.

    André

    * If you found this device or any other answer useful please consider awarding points for correct or helpful answers

  • What is the best way for a J2EE developer with oracle?

    Hello

    I am a J2EE developer, for the moment I'm working in a commercial bank as an enterprise application developer. Java, I learned when I was following a degree of local COMPUTER and with the help of books, work at my place of work and the internet, today I develop applications with JSP, Servlets, JSF2.0, EJB3.0 and third-party J2EE part libraries JSF etc (I also develop software using other programming languages such as Asp.net, c# .net, etc. WPF, but I prefer to be in the path of java). Other than that, I also work as the designer of the user interface of most of our applications.

    I have the skills and practice after having worked for 4 years as a developer of web/enterprise applications & UI designer, but now I have to focus on some grades of paper and so I do BCS.

    Now, I want to be a professional in the Oracle java path, and I need to know what is the best way, I choose to go with Oracle. I finished my SCJP courses, but did not take the exams, because there were rumors that Oracle will clear these reviews in the future. I am interested in Oracle university, but I'm unable to even think about it as I live in Sri Lanka and is not only a large part of the wealth to go to the USA and join.

    So I really appreciate if any professional Oracle could suggest me the best educational path based on what I mentioned about my technical and professional training. Because I have a dream to join Oracle a day as an employee and be a good contributor on the same forum, which I get help today!

    :-)

    Thank you!!!

    As you can see on our Web site, Oracle did not retire Java certifications. You can browse through the available certifications and I hope to help determine your path.
    http://education.Oracle.com/pls/web_prod-PLQ-dad/db_pages.GetPage?page_id=140

    SCJP became Oracle Certified Professional Java Programmer. You can find more information on these reviews on our site here: http://education.oracle.com/pls/web_prod-plq-dad/db_pages.getpage?page_id=320.

    Concerning training, virtual training live might be an option for you. You can find more information at http://education.oracle.com/pls/web_prod-plq-dad/db_pages.getpage?page_id=233.

    Kind regards
    Brandye Barrington
    Certification Forum Moderator

Maybe you are looking for