VMware Cloud Community
mb_almere
Contributor
Contributor

how to setup esx to hosts virtual machines in differnent DMZ's

Hi,

I'm new at VMware and have 1 esx 3.0 server. On this server i want to host virtual machines that are located on different firewall separted segments. I tried to add a network per nic, but ended up without being able to startup a console session from the infrastructure client. Can someone help me out here, or point me to the correct documentation ?

(we don't have virtual center in place)

Thanks,

MB

0 Kudos
7 Replies
davidbarclay
Virtuoso
Virtuoso

First thing is to read about vSwitches and Port Groups - that will help you understand the concepts.

Assuming you have at least 2 NICs...

The default is for a singel vSwitch (vSwitch0) with a Service Console and VM Port Groups attached.

You could simply create a second vSwitch (vSwitch1) and create a new VM Port Group (call it VM-DMZ or similar) then map it to the phyical NIC you intend on phyiscal connecting to the DMZ network.

That's it! Create a VM inside this Port Group and it will be in your DMZ!

Dave

0 Kudos
VirtualKenneth
Virtuoso
Virtuoso

Check http://www.vmware.com/pdf/vi3_server_config.pdf - page 22 for basic understanding

0 Kudos
mb_almere
Contributor
Contributor

Thanks for your reply

Can you give me a link to where i can find this documentation ?

I actually did create a vswitch an added the 2nd nic to it, i tried to add a Service console to it, but i got an error returncode 2 (??).

I am having a hard time finding the relevant documentation, so i would really appreciate a link/pointer.

Thanks,

MB

0 Kudos
VirtualKenneth
Virtuoso
Virtuoso

See my reply above.

Typically you only need 1 Service Console per ESX host so no need to add the Service Console to the second NIC.

0 Kudos
vmmeup
Expert
Expert

How many segments are you trying to connect to the ESX server? How many NIC's do you have in the server?

Sid Smith ----- VCP, VTSP, CCNA, CCA(Xen Server), MCTS Hyper-V & SCVMM08 [http://www.dailyhypervisor.com] - Don't forget to award points for correct and helpful answers. 😉
0 Kudos
mb_almere
Contributor
Contributor

Hi,

I want 3 segments, each one will have its own physical NIC.

Thanks,

MB

0 Kudos
VirtualKenneth
Virtuoso
Virtuoso

3 segments including 1 management segment in which your service console will be placed I guess?

Just create 3 vSwitches, physically attach them to the correct segments.

You should be able to access the Service Console IP (via VI Client) on the management LAN and depending on your physical routers you could enable it to be accessible from other segments as well.

Just some basic networking skills

0 Kudos