Hi all,
How important is switch isolation when using iSCSI with ESX (i.e., having dedicated switches for iSCSI traffic), as opposed to sharing switches (iSCSI & regular network on the same switches) and using VLANs to segregate traffic? Is the general recommendation that iSCSI switch isolation is a good idea due to security, or performance, or what?
We are looking at a NetApp FAS20x0 to use with our ESX deployment, and want to take advantage of it's NFS features (e.g. users directly accessing older snapshots of data on RDMs) and IP-based replication.
To use these features the NetApp unit would have to be physically connected to the main LAN. We can achieve this by connecting the LAN and iSCSI switches together, but this seems a bit silly if the main purpose of iSCSI switch isolation is physical security.
So, I'm wondering if switch isolation for iSCSI is really necessary - using the same switches for LAN & iSCSI (with VLANs) would be simpler, and saves us the cost of two dedicated switches for iSCSI.
Thoughts? Answers? Opinions?
Thanks in advance.