VMware Cloud Community
Seventh77
Enthusiast
Enthusiast

VM can't ping out of vSwitch - External host can ping in to VM

I have a two system network running under ESXi5 setup as the following:

Physical server > 192.168.1.100 > cabled to a layer 2 switch Port 10

VM on a vSwitch > 192.168.1.101 > host vmnic > cabled to the same layer 2 switch, Port 11

From the physical machine, I can ping the VM. From the VM, I can't ping the physical machine. I have Wireshark running on both, and I see the ICMP get from the VM to the physical machine, the ACK gets sent, but the VM never receives it.

So VM > ICMP > vSwitch > Physical Switch > Server = Good

Ack from Server > Physical Switch > Dies at the vSwitch

Both servers are Windows 2008, with the windows firewall disabled and the service stopped. Subnet mask is 255.255.255.0 on both.

What would stop the replies from my physical server from getting to the VM on the vswitch? I can ping it, so the round trip:

Physical ICMP > Virtual > ACK to Physical = Works

Virtual ICMP > Physical > ACK back to Virtual = Dies there

I have Promiscuous mode, MAC changed and forged transmits all set to Accept on the vSwitch properties.

Any insight would really be appreciated - I'm out of ideas.

Reply
0 Kudos
2 Replies
vJJSosa
Enthusiast
Enthusiast

Hello,

do you have nic teaming for this network? trying to understand, and isolated points of failure, maybe you can put only one nic as active.

Let us know any update

Regards

[VCAP5-DCA, VCP3/4/5, VCP-DT4, MCITP Network Infrastructure, HP ASE Bladesystem]
Reply
0 Kudos
rickardnobel
Champion
Champion

Seventh77 wrote:

Both servers are Windows 2008, with the windows firewall disabled and the service stopped.

Did you get this issue resolved? It does sound like a firewall problem, but might be other issues too. Let us know if it still open.

My VMware blog: www.rickardnobel.se
Reply
0 Kudos