5.1

Table Of Contents
2 Double-click the organization vDC name to open the organization vDC.
3 Click the Org vDC Networks tab, right-click the organization vDC network name, and select Configure
Services.
4 Click the DHCP tab and select Enable DHCP.
5 Type a range of IP addresses or use the default range.
vCloud Director uses these addresses to satisfy DHCP requests. The range of DHCP IP addresses cannot
overlap with the static IP pool for the organization vDC network.
6 Set the default lease time and maximum lease time or use the default values.
7 Click OK.
vCloud Director updates the network to provide DHCP services.
Enable the Firewall for an Organization vDC Network
You can configure certain organization vDC networks to provide firewall services. You can enable the firewall
on an organization vDC network to enforce firewall rules on incoming traffic, outgoing traffic, or both.
You can deny all incoming traffic, deny all outgoing traffic, or both. You can also add specific firewall rules to
allow or deny traffic that matches the rules to pass through the firewall. These rules take precedence over the
generic rules to deny all incoming or outgoing traffic. See “Add a Firewall Rule for an Organization vDC
Network,” on page 85.
System administrators and organization administrators can enable firewalls.
Prerequisites
Verify that you have an external routed organization vDC network.
Procedure
1 Click the Manage & Monitor tab and click Organization vDCs in the left pane.
2 Double-click the organization vDC name to open the organization vDC.
3 Click the Org vDC Networks tab, right-click the organization vDC network name, and select Configure
Services.
4 Click the Firewall tab and select Enable firewall.
5 Select the default firewall action.
6 (Optional) Select the Log check box to log events related to the default firewall action.
7 Click OK.
Add a Firewall Rule for an Organization vDC Network
You can add firewall rules to an organization vDC network that supports a firewall. You can create rules to
allow or deny traffic that matches the rules to pass through the firewall.
For a firewall rule to be enforced, you must enable the firewall for the organization vDC network. See “Enable
the Firewall for an Organization vDC Network,” on page 85.
When you add a new firewall rule to an organization vDC network, it appears at the bottom of the firewall
rule list. For information about setting the order in which firewall rules are enforced, see “Reorder Firewall
Rules for an Organization vDC Network,” on page 86.
System administrators and organization administrators can add firewall rules.
Chapter 5 Managing Cloud Resources
VMware, Inc. 85