streda 31. marca 2010

Dolezite vlastnosti privatnych VLAN

Dolezite informacie ohladne privatnych VLAN:

* Promiscuous PVLANs have the same VLAN ID both for Primary and Secondary VLAN.
* Community and Isolated PVLANs traffic travels tagged as the associated Secondary PVLAN.
* Traffic inside PVLANs is not encapsulated (no Secondary PVLAN encapsulated inside a Primary PVLAN Packet).
* Traffic between virtual machines on the same PVLAN but on different ESX hosts go through the Physical Switch. Therefore, the Physical Switch must be PVLAN aware and configured appropriately, to allow the secondary PVLANs to reach destination.
* Switches discover MAC addresses per VLAN. This can be a problem for PVLANs because each virtual machine appears to the physical switch to be in more than one VLAN, or at least, it appears that there is no reply to the request, because the reply travels back in a different VLAN. For this reason, it is a requirement that each physical switch, where ESX with PVLANs are connected, must be PVLAN aware.

Zdroj: http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=1010691

Ako nastavit PVLAN: http://www.screencast.com/users/esloof/folders/Online-Training/media/1e75b813-6643-4075-a9c9-078432e4c512

Žiadne komentáre: