VMware Cloud Community
roadgeek
Contributor
Contributor
Jump to solution

Isolating port traffic on a vSphere standard switch

Hi,

I am deploying an environment where I have a pool of 100 virtual machines that live on an isolated vSphere standard switch. The virtual machines communicate with the rest of the world through a dual-NIC virtual machine. This setup is working as expected, but I'd like to go a bit further and isolate network connectivity such that each virtual machine can only communicate with the dual-NIC system, and not with each other. On the existing vSphere standard switch, the pool of 100 virtual machines are all located on the same VLAN and port group. I've spent some time digging through documentation but I've not found a clean way to implement what I want. The best I can come up with is putting each of the 100 virtual machines on their own VLAN, but this is ugly and will be a pain to maintain. Is there something easier that I've missed?

Thank you,

Steve

0 Kudos
1 Solution

Accepted Solutions
rcporto
Leadership
Leadership
Jump to solution

PVLAN, but you will need the Distributed Virtual Switch.

---

Richardson Porto
Senior Infrastructure Specialist
LinkedIn: http://linkedin.com/in/richardsonporto

View solution in original post

0 Kudos
2 Replies
rcporto
Leadership
Leadership
Jump to solution

PVLAN, but you will need the Distributed Virtual Switch.

---

Richardson Porto
Senior Infrastructure Specialist
LinkedIn: http://linkedin.com/in/richardsonporto
0 Kudos
roadgeek
Contributor
Contributor
Jump to solution

Thank you, I'll look into what it will take to get a dvs set up in this environment.

0 Kudos