A customer in a VMware ESXi environment wants to add a VM-Series firewall and partition an existing group of virtual machines (VMs) in the same subnet into two groups. One group requires no additional security, but the second group requires substantially more security.
How can this partition be accomplished without editing the IP addresses or the default gateways of any of the guest VMs?
Creating a New Virtual Switch:
By creating a new virtual switch, you can segment the network within the ESXi environment. The VM-Series firewall can then be used to provide security controls between these virtual switches using virtual wire mode.
Palo Alto Networks VM-Series Deployment Guide
Moving Guests to New Virtual Switch:
Guests requiring additional security are moved to the new virtual switch, allowing the VM-Series firewall to inspect and control traffic between the switches. This setup does not necessitate changes to the existing IP addresses or default gateways of the VMs.
Palo Alto Networks VM-Series Virtual Wire Mode
Hubert
2 months agoChristene
1 months agoNickie
1 months agoLyndia
1 months agoFletcher
2 months agoKiley
29 days agoMyra
1 months agoParis
1 months agoBarrie
2 months agoTamra
2 months agoAlpha
2 months agoNovella
2 months agoCarlee
3 months agoSharmaine
3 months agoVanesa
3 months agoTish
2 months agoNieves
2 months agoPhung
2 months agoJosphine
2 months agoAnastacia
3 months ago