VMware Networking Community
osullp3
Contributor
Contributor

NSX Problem


I have installed and configured NSX, VTEP pings are successful for both minimum and VXLAN standard. VMs assigned to the logical switch created cannot ping the default gateway used. I have setup the VXLAN using the 'Failover' teaming policy and all looks fine on vCenter for the controllers. If VMs are moved to a different distributed switch using the same uplinks and vLAN, they can ping the gateway.

The 'show control logical switches arp tables 5001' command  - shows no mac addresses.

I issued a '/etc/init.d/netcpad' restart on both esxi hosts in the cluster used, which didn't help. VM's on the logical switch used cannot ping anything else on the same network including the default gateway.

Is there something I am missing ?

Thanks

0 Kudos
4 Replies
grosas
Community Manager
Community Manager

Hi osullp3

Did you add the Virtual Machines to the Logical Switch by editing their vNIC network in the VM Properties or by using the Networking & Security > Logical Switches UI?

Is the default gateway in question VLAN backed or VXLAN backed?

Is NSX seeing all of the distributed switches as belonging to your transport zone?

_____________________________________
Gabe Rosas (VMware HCX team at VMware)
Blog: hcx.design
LinkedIn: /in/gaberosas
Twitter: gabe_rosas
0 Kudos
osullp3
Contributor
Contributor

Hi Grosas,

Thank you for your reply:

Did you add the Virtual Machines to the Logical Switch by editing their vNIC network in the VM Properties or by using the Networking & Security > Logical Switches UI?

     I tried both of the methods you suggested.

Is the default gateway in question VLAN backed or VXLAN backed?

     The default gateway is VLAN backed

Is NSX seeing all of the distributed switches as belonging to your transport zone

     NSX is seeing the either distributed switch as belong to the transport zone.

0 Kudos
grosas
Community Manager
Community Manager

Hi osullp3osullp3

There needs to be a VXLAN backed gateway for that type of connectivity to work.  The OS level gateway for a VM in VNI 5001 cannot be anything but an DLR or ESG interface connected to that VXLAN. 

That device then has to have direct or routed connectivity to the VLAN backed gateway.  

Example:

( The VLAN X BACKED Gateway in question)

|

|

|

vNic_Y   VLAN BACKED in VLAN X

+---------------------------------------------------------------------------+

| ESG w/interface to VNI 5001 and VLAN backed network |   <--- this can only be an Edge Services Gateway or Distributed Logical Router

+---------------------------------------------------------------------------+
+vNic_X    192.168.x.1   VXLAN BACKED VNI 5001

|     

|

|---- VNI 5001 192.168.x.0/24----|
   |

   |

   | VM-1 192.168.x.5 with a gateway of 192.168.x.1 and Subnet Mast /24

Does that make sense?

_____________________________________
Gabe Rosas (VMware HCX team at VMware)
Blog: hcx.design
LinkedIn: /in/gaberosas
Twitter: gabe_rosas
0 Kudos
iforbes
Hot Shot
Hot Shot

I have the same issue. Did you resolve? How?

0 Kudos