Thanks for the reply. I will separate the vMotion traffic, but I think I will need to keep Management and VM network on the same VLAN for now because that is where the physical vCenter server resides. I can't change the IP of the vCenter server because it doubles as an internal DNS server.
Attached JPG is what I was thinking.... any thoughts? (ignore the fact the NIC's show disconnected)
I guess I could spin up a new vCenter VM (or P2V the one I have) to separate the two and accomplish getting Management isolated. I'm always a bit leary of using a vCenter VM for some reason - maybe shouldn't be.