Final Network Configuration Vsphere5 1
Final Network Configuration Vsphere5 1
vSphere 5.1
Agenda
ESX/ESXi Host
Port Group
Service Console
vSwitch (vswif)
NIC Teams
Physical NIC
(vmnic or pnic)
Uplinks
Physical
Physical switch Network
Three Types of Virtual Switches
6
VLAN Tagging Options
VST – Virtual Switch Tagging VGT – Virtual Guest Tagging EST – External Switch Tagging
vnic
vnic
vnic
vnic
vnic
vnic
vnic
vnic
vnic
Port
Groups
assigned
to a VLAN vSwitch vSwitch vSwitch
External Physical
switch applies
VST is the preferred and VLAN tags
• DP, responsible for performing the forwarding, runs inside the VMKernel of the ESX/ESXi
(vSwitch).
vCenter
I/O Plane
vSwitch Vs DVSwitch Vs Cisco N1K
• LACP
• Plug and Play – Automatically configures and negotiates
• Dynamic – Detects link failures and cabling mistakes
• RSPAN / ERSPAN
• Allow Port-Mirroring from VM to Remote Host (Dedicated VLAN)
• With ERSPAN mirror data is allowed to be encapsulated with GRE tunnel for across IP
Network monitoring.
• SNMP MIB
• Better security through support for SNMPv3
• Support for IEEE/IETF networking MIB modules that provides additional visibility into
virtual networking infrastructure
Organizational
• If you have a group which controls both VM deployment and network provisioning,
then choose vSS/vDS (integrated control via vSphere Client UI)
• If you have a separate network admin group, trained on Cisco IOS CLI, and wishes to
maintain control over virtual and physical networking, then
choose N1K
Other factors
• Budget – vDS/N1K requires Enterprise+ License
• Features – vSS features are frozen, vDS features are evolving (ask Cisco about N1K)
Security
• BPDU Filter
• Filter the BPDU packets that are generated by virtual machines,
• Preventing any DoS attack situation
• Feature is available on VSS and VDS
• LACP
• Plug and Play – Automatically configures and negotiates
• Dynamic – Detects link failures and cabling mistakes
Organizational
• If you have a group which controls both VM deployment and network provisioning,
then choose vSS/vDS (integrated control via vSphere Client UI)
• If you have a separate network admin group, trained on Cisco IOS CLI, and wishes to
maintain control over virtual and physical networking, then
choose N1K
Other factors
• Budget – vDS/N1K requires Enterprise+ License
• Features – vSS features are frozen, vDS features are evolving (ask Cisco about N1K)
Configuration Best Practices: #1
Validate
• Duplex settings, NIC Hardware status
• Link status
• Switch Port status
• Switch Port Configuration
• Jumbo Frames Configuration
KB articles
• ESX/ESXi hosts have intermittent or no network connectivity (1004109)
• Configuring networking from the ESX/ESXi service console command line (1000258)
• Verifying ESX/ESXi host networking configuration on the service console (1003796)
• Observed IP range does not show network in ESX/ESXi or ESX (1006744)
• Configuring the ESXi Management Network from the direct console (1006710)
• Configuring and troubleshooting basic software iSCSI setup (1008083)
• VMware KB 1003804 – STP may cause temporary loss of network connectivity when a failover or failback event occurs
• VMware KB2007467 - Multiple-NIC vMotion in vSphere 5