5.8

Table Of Contents
Figure 25. Network isolation in the software-defined data center
Management cluster
Edge cluster
Payload cluster
VLAN ESXi/DHCP Helper
VLAN IP Storage
VLAN vMotion
VLAN Fault Tolerance
VLAN Management Server
VLAN Fault Tolerance
VLAN Transport/VXLAN VLAN Transport/VXLAN
VLAN Internet
VLAN DMZ
VLAN vMotion VLAN vMotion
VLAN IP Storage VLAN IP Storage
VLAN ESXi/DHCP Helper VLAN ESXi/DHCP Helper
Internet/DMZ
Sample ESXi host Sample ESXi host Sample ESXi host
ESXi/DHCP Helper
The helper network is used for PXE booting ESXi images by using Auto
Deploy.
IP Storage
Network storage traffic over Ethernet should be isolated for performance
and security reasons.
vMotion
vMotion traffic is not encrypted by default. Isolate the vMotion traffic to
increase security while migrating the state of virtual machines and the
contents of virtual disks between hosts.
Fault Tolerance
FT logging traffic should use a dedicated VLAN.
Management Server
Management traffic between vCenter Server and ESXi hosts.
Shared Storage Design Considerations
A proper storage design provides the basis for a virtual data center that performs well.
n
The storage design must be optimized to meet the diverse needs of applications, services,
administrators, and users.
n
Tiers of storage have different performance, capacity, and availability characteristics.
n
Designing different storage tiers is cost efficient, given that not every application requires expensive,
high-performance, highly available storage.
n
Fibre Channel, NFS, and iSCSI are mature and viable options to support virtual machine needs.
vCloud Suite Architecture Overview and Use Cases
18 VMware, Inc.