ver Design o Xe etworking - Lagout.org

39
Cit r Intr o r ix Xe oduc enSer tion t www ver D t o Xe w.citrix. Design nSer v com n: ver N Netwo or king g

Transcript of ver Design o Xe etworking - Lagout.org

CitrIntro

rix Xeoduc

enSertion t

www

rver Dto Xe

w.citrix.

DesignnServ

com

n: ver N

Netwoorkingg

Page 2

Conte

About .....

Purpos

Audien

Finding

Visual L

Additio

Chapter 1

Chapter 2

Introdu

Connec

Networ

Impact

Sequen

Cabli

Conn

Chapter 3

Examp

Creat

Conn

Segre

Scena

Scena

Scena

Scena

nts

......................

se of the Gui

nce .................

g Configurati

Legend ........

onal Termino

1: Introductio

2: Basic XenS

uction to Xen

cting Virtual

rking Config

t of Pools on

nce of Netwo

ing Configur

necting XenS

3: Sample Ne

ple: Adding V

ting Network

necting a VM

egating VM T

ario 1: Segreg

ario 2: Using

ario 3: Isolat

ario 4: Conn

......................

de .................

......................

ion Instructio

......................

ology .............

on .................

Server Netw

nServer Netw

Machines to

guration after

n XenServer N

orking Config

ration for Xe

Server to Phy

etworking Sc

Virtual Machi

k Resiliency t

M to a Netwo

Traffic from

gating Traffi

g the Manage

ting VM Traf

necting VMs t

.......................

.......................

.......................

ons ................

.......................

.......................

.......................

working Conc

working ........

o Networks ...

r Installation .

Networking .

guration Task

nServer ........

ysical Switche

cenario ..........

ines to a Net

through Bon

ork using Virt

Managemen

c ....................

ement Netwo

ffic on a Priv

to Multiple L

......................

......................

......................

......................

......................

......................

......................

cepts ..............

......................

......................

......................

......................

ks ..................

......................

es ..................

......................

twork ............

nds .................

tual Interface

nt and Storag

......................

ork for VM T

vate Network

Linked VLAN

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

es ...................

ge Traffic .......

......................

Traffic ...........

k .....................

Ns .................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

......................

....... 4 

....... 4 

....... 5 

....... 5 

....... 6 

....... 7 

....... 8 

..... 10 

..... 10 

..... 11 

..... 13 

..... 14 

..... 17 

..... 17 

..... 20 

..... 22 

..... 22 

..... 23 

..... 25 

..... 27 

..... 28 

..... 29 

..... 30 

..... 32 

Page 3

Version H

History ...............................

.................................................................................................................... 38 

Page 4

This guidXenServe

T

G

H

Ain

Purpo

This guidLearning design an

Since thisinclude inLikewise,concepts.

This guidtypically rHoweveradministr

de helps you uer environme

The correct se

Guidance abo

How XenServ

An overview onterface

ose of t

de uses a scenXenServer n

nd best practi

s guide is men-depth infor, this guide g.

de assumes threfers to Xenr, because thirative docum

understand Xents. It includ

equence in w

out cabling X

ver networkin

of basic netw

the Gu

nario-based anetworking cices.

ant to help yrmation abouenerally does

he most comnCenter. Howis is a concep

mentation, as

XenServer nedes the follow

which to conf

XenServer ho

ng behaves in

working conc

ide

approach to eoncepts prov

you achieve aut networkins not provide

mon methodwever, it doepts guide, it isdescribed in

etworking anwing topics:

figure XenSe

sts and conn

n a pool

cepts, includi

explain basicvides the fou

a high-level ug features, sue configuratio

d of managins provide CLs assumed yo“Finding Co

nd design a n

rver network

necting them

ing bonds an

c XenServer nundation for u

understandinguch as qualityon instructio

ng XenServerLI commandou will find inonfiguration

etworking co

king

to physical s

nd the primar

networking cunderstandin

g of networky of service o

ons except as

r is through Xds as well in snstructions inInstructions”

Abo

onfiguration

switches

ry manageme

concepts. ng networkin

king, it does nor bonding. needed to cl

XenCenter, ssome cases. n the ” on page 5.

out

for

ent

ng

not

larify

so it

Page 5

Audie

Before rethe physi

Aimo

Sy

Inpo

This guidinstallatio

Findi

You can

XXw

Xlinin

ence

eading this gucal network i

Application Amplementingther applicat

ystems Arch

nfrastructurrofessionals rganizations.

de assumes thon, XenCente

ng Con

find network

XenCenter HXenCenter, thwith the XenS

XenServer Adne based instnformation a

uide, you shoinfrastructur

Administratg a virtualizatitions they ma

hitects. Syste

re Engineerswho configu.

hat you are faer, resource p

nfigurat

king configur

Help. The Xehe XenServerServer xe CL

dministratotructions for bout XenSer

ould have a be in your env

tors. XenAppion solution anage.

ems architect

s and Netwure storage or

amiliar with bpools, and th

tion Ins

ration instruc

enCenter helpr UI-based adI commands

r’s Guide. Tperforming

rver network

basic knowledvironment. T

p and XenDto virtualize

ts who are de

work Adminir manage the

basic XenSerhe pool maste

structio

ctions in the

p provides Udministrations, may prefer

The XenServernetworking t

king from the

dge of physicThis guide ha

esktop adminCitrix produ

esigning a vir

istrators. Nee Layer 2 netw

rver conceptser.

ons

following loc

UI-based stepn console. Usthis option.

r Administratotasks. For in

e object-mod

cal networkinas several aud

nistrators whucts, IT infra

rtualized env

etworking anwork infrastr

s, including X

cations:

p-by-step instsers who are

or’s Guide protegrators, it a

del perspectiv

ng and, idealldiences:

ho are structure, or

vironment.

d storage ructure in the

XenServer

tructions usin not comfort

ovides commalso providesve.

ly,

eir

ng table

mand-s

Page 6

Visua

This guidicons:

Icon

al Lege

de relies heav

nd

vily on diagra

Mea

VirtuXenS

Virtufunclets Vrefer

NetwXenSphysinter

Hosruns

NIC

Poolhostsvirtu

To joshou

Poolmem

ms to explain

aning

ual MachineServer host.

ual Interfacetions like a NVMs send anrs to virtual in

work. A netwServer that lesical NICs to rfaces togethe

st. A XenServ.

C. The physic

l. A XenServs which, com

ual machines.

oin hosts to auld be runnin

ls comprise ambers (someti

n key concep

e (VM). A vi

e. On VMs, NIC is knownnd receive nenterfaces as V

work is the vets you connethe virtual in

er.

ver host is th

cal network in

ver resource pmbined with s

a pool, they rng the same X

a pool masterimes also ref

pts. These dia

virtual compu

the logical inn as a virtualtwork trafficVIFs and vir

virtual networect your virtunterfaces and

he physical co

nterface card

pool is a conshared storag

require broadXenServer ve

r and subordferred to as "

agrams use th

uter that runs

nterface that l interface. Ac. Some prodrtual NICs.

rk switching ual machinesd connects th

omputer on w

d (NIC) in a h

nnected groupge, provides

dly compatibersion and pa

dinate servers"slaves"). The

he following

s on the

appears and A virtual interduct literature

fabric built is. It links thehe virtual

which XenSe

host.

p of up to 16a platform to

ble hardware atches.

s known as pe pool maste

g

face e

into e

erver

6 o run

and

pool r

Page 7

Addit

These ter

Primary address thbetween h

VM traffsystem ortraffic thasometime

tional T

rms appear in

Managemehat XenServehosts, betwe

fic. The traffir data users sat was in youes referred to

provmastnece

Physnetw

This phys

NIC

A NIone n

Termino

n the section

ent Interfaceer uses for iten a host and

fic going to osend to the apur environmeo as guest tra

vides a single ter will forwassary.

sical Switchwork segment

guide presensical box or a

C Bond. In th

IC bond is a network card

ology

s that follow

e. The primars managemend Workload B

r from a VMpplication on

ent before yoffic or VM/g

point of conard command

h. The devicets together.

nts physical sas a one-dime

his guide, enc

pair of NICd. NIC bond

w:

ry management network, iBalancing an

M. This trafficn the VM. VMou virtualizedguest traffic.

ntact for all thds to individu

e on a physica

switches eithensional pane

closing NICs

s configuredding is also kn

ent interface including, bu

nd for live mi

c may be fromM traffic refe

d servers and

he servers inual pool mem

al network th

her as a three-el with ports

s in green rep

d so they loginown as NIC

is a NIC assut not limitedigration.

m the VM’s gers to the statheir applica

n the pool anmbers as

hat connects

-dimensional.

presents a bo

cally functionC teaming.

signed an IP d to, traffic

guest operatiandard netwoations. This i

d the

l

ond.

n as

ing ork s

Page 8

This docuscenariosconnectin

These samsingle-sertime you

This illustrVLAN n

umentation e to illustrate

ng a VM to a

mple scenariorver private nfinished, you

ration shows honetwork, and a

explains basicthe concepts

a network.

os focus on tnetworks. If yu would crea

ow virtual macsingle-server p

c networkings. The scenar

three differenyou configurte a deploym

chines connect torivate network.

C

g concepts anrios begin im

nt types of nred the scena

ment that look

o three different.

Chapte

nd their applimmediately af

networks: Extarios demonsked like the f

t types of netwo

er 1: Int

ication by usfter installatio

ternal Netwostrated in thisfollowing illu

orks: an extern

roduct

sing a series oon and end w

orks, VLANss guide, by thustration.

nal network, a

ion

of with

s, and he

Page 9

This guid

Chapter configuraincludingeffect pooinstallatio

Chapter network. includingNICs to smanagemcreating a

If you wa“Visual L

de explains th

2 introducesation by confg the correct oling XenSer

on.

3 provides sThe first sce

g storage and specific types

ment and VMa single-serve

ant to reviewLegend” on p

hese types of

s XenServer nfiguring the psequence forrver hosts ha

everal samplenario guidesmanagemen

s of traffic; itM traffic. The

er private net

w XenServer npage 6.

f networks by

networking aphysical infrar physically cas on network

le scenarios ts you throughnt traffic. Thet shows an exthird scenari

twork on a h

networking c

y providing th

and explains astructure andonfiguring nking and des

that illustrate h the processe second scenxample of usio shows an ost.

concepts befo

he following

how to prepd hardware l

networking. Tscribes the ne

how to add s of segregatinario gives yosing the manaexample of h

ore reading t

g information

pare for XenSayers in your

The chapter aetworking co

virtual maching different ou an alternaagement netwhow to segre

this informati

n:

Server networ environmenalso discusseonfiguration a

hines to a types of traf

ative to dedicwork for gate traffic b

ion, see the

orking nt, s the after

ffic, cating

by

Page 10

This chap

A

T

Introd

XenServethe same

The VMs

Chapte

pter includes

An introductio

The network

duction

er provides vway you bui

connect to thre

er 2: Ba

the followin

on to XenSe

settings creat

n to Xen

virtual networld networks

ee different type

asic Xen

ng topics:

rver network

ted during in

nServe

rking featurefor physical

es of networks:

nServe

king

nstallation

r Netwo

es that let youmachines.

an office netwo

r Netwo

orking

u build netwo

ork, an interna

orking

orks for your

al private netwo

Conce

r virtual mac

ork, and a VL

pts

hines

LAN.

Page 11

You can or build pcan conn

The mostnetworks:

Vvieavi

Nmp

Ayovileo

Conn

When youconnect t

1. Cyo

2. Ca coN

One way and virtua

connect virtuprivate netwoect virtual m

t important n

Virtual interfirtual interfacach virtual inirtual interfac

Networks. Xmachines on a

rotocols that

A network is tour virtual mirtual interfacearning switcr bridges.

necting

u are configuthe VMs to a

Connect the hou would con

Connect the Vnetwork. Asonnect to ne

NIC.

to think aboal layers as sh

ual machinesorks within a

machines to yo

networking c

faces. Virtuaces. Virtual in

nterface its owces as VIFs a

XenServer hasa XenServer t are used on

the logical nemachines. It li

ces together.hes. Some ve

Virtual

uring networa network. To

host to a phynfigure a priv

VM by creatins shown in thtworks in a h

out these taskhown in the

s to your proda host or pooour VLAN n

components X

al machines cnterfaces let wn IP addresand virtual NI

s an internal vhost commu

n physical net

etwork switchinks the phys These netwoendors’ virtu

l Machi

k connectivito do this:

ysical networkvate network

ng a Virtual Ihe illustrationhost and then

ks is that youillustration th

duction netwol for testing, networks usin

XenServer le

connect to neVMs send anss and MAC

NICs.

virtual switchunicate with etworks.

hing fabric bsical NICs toorks are virtu

ualization pro

ines to

ty on XenSer

k. (For VMs k instead.)

Interface forn on page 10,n connect to

u need to conhat follows.

work like you developmenng standard V

ets you config

etworks usingnd receive neaddress. Som

h, known as each other us

built into Xeno the virtual iual switches

oducts refer t

Netwo

rver hosts, yo

without exte

r it and conn, the virtual ia physical ne

nfigure conne

u connect phynt, or securityVLAN confi

gure are virtu

g virtual NICetwork traffime product li

a network, thsing the sam

nServer that interfaces andthat behave to networks a

rks

our ultimate

ernal network

ecting the Viinterfaces onetwork throu

ectivity at bo

ysical machiny purposes. Ygurations.

ual interfaces an

Cs, known asc. You can aiterature refe

hat lets virtue networking

lets you netwd connects thas regular L2as virtual switc

goal is to

k connectivit

irtual Interfa the VMs ugh the host’

th the hardw

nes You

nd

s ssign

ers to

al g

work he 2 ches

ty,

ace to

’s

ware

Page 12

This illustrthe physicameans connattaching V

ImportanConfigurainterface on the po

ration shows thal infrastructurenecting hosts to VMs to networ

nt: Configuriation Tasks”may not be c

ool master an

he order in whice layer, which mnetworks and

rks through vir

ing networki” on page 17 configured cond not their h

ch you should cmeans connectinconfiguring the

rtual interfaces.

ing in the ordis critical. If orrectly on ehome or opti

configure netwong NICs to swiese networks; (3

der listed desyou vary from

each host. If timal servers.

rking in your vwitches; (2) conf(3) configure the

scribed in “Sem this sequethis occurs, a

virtual environmfigure the hardwe virtual layer,

equence of Nence, the primall VMs in th

ment: (1) Startware layer, whiwhich means

Networking mary managehe pool may s

rt on ich

ement start

Page 13

Netw

After instyour exteXenServe

IPnXb

NfohN

PSeowNw

The iprima

This illustrmanagemen

working

tallation, the ernal networker:

P Address Cetworking co

XenServer Setased on the v

Network Conor network cas, for examp

Network 2. Fo

Primary Manetup, you sperganization’s

with other hoNIC is knownwith an IP add

llustration thary managem

ration contrastsnt interface has

Config

XenServer hks. This is be

Configuratioonfiguration tup configurevalues you pr

nnectivity. Xonnectivity bple, three NIor a visual ex

nagement Inecify an IP ads network andsts in a pool,

n as the primadress.

hat follows shment interface

s a regular NICs an IP address

guration

host has all thecause you de

on and Othewhen you fires options, surovide during

XenServer inby creating onICs, XenServxplanation, se

nterface andddress for ond to carry ma, XenCenter,ary managemen

hows a regulae.

C with one confs, subnet mask,

n after I

e informationefine the follo

er Settings. Yrst install Xenuch as the IPg installation

nstallation prene network f

ver creates thee page 14.

d the Managne NIC. Xenanagement tr Workload B

nt interface. Th

ar (unconfigu

nfigured as the pk, and gateway

Installa

n it needs to owing netwo

You set the hnServer on thP address conn.

epares each Nfor each NIC

hree network

gement NetnServer uses traffic for funBalancing, anhis is the only

ured) NIC an

primary managassigned to it.

ation

connect to aorking option

host’s initial he physical cnfiguration (D

NIC connectC. This means: Network 0

twork. Durinthat NIC to

nctions like cnd other comy NIC that Se

nd a NIC con

gement interfac

at least one ons while insta

XenServer computer. DHCP/stati

ted to a switcns that if the h0, Network 1

ng XenServerconnect to yommunicatin

mponents. Thietup configu

nfigured as a

ce. The primary

of alling

c),

ch host ,

r your ng is

ures

a

y

Page 14

During inUnless yo

The illustfollowing

This illustrinterface. I

Most envrange fronetworksprovide e

Note: If XenCentereboot th

Impa

NetworkiXenServe

As a resuall hosts i

W

W

W

nstallation, Xou change thi

tration that fog installation.

ration shows hoIn this case, the

vironments rem creating p, and configu

examples of t

you plug anyer or xsconso

he XenServer

ct of Po

ing is a pool-er synchroniz

ult, for XenSein the pool, i

Which NICs a

Which NICs a

Which NICs c

XenServer alsois set up, Xen

ollows show

ow, during instadministrator

equire additiopools to integuring a separthese tasks.

y NICs into sole, you mighr host.

ools on

-level featurezes all hosts i

erver to operincluding:

are bonded

are configure

connect to st

o creates a senServer uses

s an example

tallation, XenSr selected NIC0

onal configurgrating additiorate storage n

switches afteht need to eit

n XenSe

e in XenServein a pool to u

rate correctly

ed as the prim

torage

eparate netw the addition

e of XenServ

Server lets you c0. XenServer u

rations to theonal network

network. The

r installing Xther a) run x

erver N

er. When youuse the same

, you must en

mary manage

work for eachnal NICs on t

ver’s initial ne

choose a NIC uses the other N

ese basic netks, connectine scenarios in

XenServer, if xe pif-list or

Network

u change netwe network set

nsure that ne

ement interfa

h NIC it detecthe host for

etwork config

as the primaryNICs for VM

twork settingng your VMsn the followin

you cannot sxe pif-plug

king

tworking on tttings.

etwork settin

ace

cts on the hoVM traffic o

guration

y management traffic.

gs. These can to those ng chapter

see the NICsin the CLI o

the pool mas

ngs match acr

ost. only.

n

s in or

ster,

ross

Page 15

The netwthe pool.

This illustr

Ideally, yoPooling tnetworkin

works to whic

ration shows tw

ou should adthe hosts befong-configura

ch NICs conn

wo hosts joined

dd all desiredfore configuriation databas

nect must be

together in a p

hosts to theing networkie.

e the same on

pool before any

e pool beforeing creates cl

n the corresp

networking con

e configuringleaner record

ponding NIC

nfiguration is p

g any networkds in XenServ

Cs on each ho

performed on th

k settings. ver’s internal

ost in

hem.

l

Page 16

These two hosts in theillustrationXenCenter

After creathe netwo

When youmatch the

C

M

XenServemigrationthe physiinterventiwhich ho

illustrations she pool. In the to

n, after reconfigur automatically

ating a new pork settings o

u use XenCee newly mod

Change each h

Make the chan

er requires nen, such as Xecal server hoion. Therefo

ost XenServer

how how XenSetop illustration, uring NIC 3 o

y configures the

pool or joininon the maste

enter to makedified host. W

host manuall

nge on the p

etwork settinenMotion, Hiosting a VM tre, the VMs r moves them

erver replicates NICs 3 and 6

on the pool masother host in th

ng a host to ar to the joini

e networkingWhen you use

ly to match th

ool master an

ngs to match igh Availabilito change at must be able

m on to.

the network se6 on both hostsster to use Netwhe pool to use t

an existing ping hosts.

g changes, Xee the CLI to c

he modified

nd restart all

across the pity, and Worany time, and

e to access all

ettings created ots use Networktwork 12 and Nthose settings.

pool, XenServ

enCenter chachange netw

host’s setting

l the member

ool because rkload Balancd possibly aull of their targ

on the pool maks 3 and 6. In tNIC 6 to use N

ver automatic

anges the othwork settings,

gs

r hosts in the

of features thcing. These futomatically wget networks

aster on all othethe bottom Network 18,

cally replicat

her hosts to you must ei

e pool

hat use live features enabwithout yours regardless o

er

es

ther:

ble r of

Page 17

For this rconfiguraphysical c

Importanmember haddress.

Sequ

Citrix rechelp ensu

1. CableConfi

2. Confi

3. Instal

4. CreatNetw

5. ConfiSamp

Cabling

Citrix recswitches

1. Ifin

2. Cis

TNoo

The follo

reason, it is cation for eachconfiguration

nt: After joinhost to make

uence o

commends peure XenServe

e the hosts byfiguration for

figure the swi

ll XenServer

te a pool of tworking” on p

figure NIC bople Networkin

g Configu

commends plbefore instal

f you did notnto the appro

Connect the cs, the same su

The term correNIC 3 on Ho

n every host n all other ho

owing figure i

critical to havh host acrossn on all hosts

ning the hoste sure that it

of Netwo

erforming yoer stores your

y plugging alr XenServer”

itches. See “C

on the hosts

he hosts, if ypage 14.

onds and netng Scenario.”

ration for

lugging the plling XenServ

t cable your hopriate switch

correspondinubnet).

esponding referst 1, NIC 3 omust connec

osts in the po

is a visual exa

ve and maintais the pool. Lis in a pool be

ts to the poolhas its own u

orking

our initial netr networking

ll NICs into t” on page 17.

Connecting X

s.

you want to p

tworks. For m”

XenServe

physical Ethever. The idea

hosts before h ports.

ng NICs on e

rs to the NICon Host 2, Nct to the samool.

ample of this

in an identicaikewise, Citriefore changin

l, check the punique IP ad

Config

tworking cong configuratio

the appropria

XenServer to

pool them. Se

more inform

er

ernet cables inal process is a

installation, p

each host in t

C of the sameNIC 3 on Hosme physical ne

s configuratio

al physical caix strongly reng network s

primary manddress and/o

uration

nfiguration inon correctly:

ate switches,

o Physical Sw

ee “Impact o

mation, see the

nto all the Nas follows:

plug all the N

the pool to th

e number onst 3. This meetwork as th

on in an ente

abling, NIC, aecommends csettings on ea

nagement inter set the corr

n Tasks

n the sequenc

, as described

witches” on p

of Pools on X

e scenarios in

NICs and the

NICs in each

he same phy

n another hoseans that eache NIC in the

erprise enviro

and switch changing theach host.

erface on eacrect static IP

s

ce that follow

d in “Cabling

page 20.

XenServer

n “Chapter 3

appropriate

h host in the

sical switch (

st. For examh individual Ne same positio

onment.

e

ch

ws to

g

3:

pool

(that

ple, NIC on

Page 18

This illustrswitch reprnetworks a

EnsuringillustratioNICs in t

In an envthat formnetwork tshows ho

ration shows horesents a separaas the correspon

g the cabling on, all NICs mthe same pos

vironment wim one large ph

that have theow you might

ow each correspate physical netwnding NICs on

on each hostmust connectsition on all h

ith only one lhysical netwoe same physict cable such a

ponding NIC owork. Each mthe pool maste

t in the pool t to the samehosts across t

logical switchork), you onlcal or logical an environm

on both hosts member host’s Ner.

is correct is e physical netthe pool.

h (for examply need to co(VLAN) con

ment.

must physically NICs must be c

critical. As shtworks (show

ple, one that honnect the NInnectivity. T

connect to the sconnected to the

hown in the wn as separat

has a hierarcICs to switch

The example t

same network. e same physical

previous te switches) a

chy of switchhes on that that follows

Each l

as the

hes

Page 19

This illustrThese switcports have

XenServeif a XenScannot inconfigura

Ensuringensures thto Netwothe same

Note: Whyou mustpool plugto the methe cables

ration shows twches function logthe same conne

er cannot deterver host ex

ndicate the caation as the c

g that the corrhat a host’s Vork 1 on anotphysical con

hen you cont have, at a mgged into youember hosts. s for that NI

wo switches thatogically as one uectivity, the NI

tect if you mxpects to be abling is incocause.

responding NVM attached ther host. Thnnectivity afte

figure netwominimum, theur network. OLikewise, if

IC on each ho

t are connected unit. Because thICs can be plugg

ake any errorable to conta

orrect. If you

NIC on eachto, for exam

his ensures ther migration.

orking, if youe NIC(s) for tOtherwise, thyou are usingost.

d across a backphere are no VLgged into any po

rs while settiact a specific receive error

h host has themple, Networhat if you mig.

u do not havethe primary m

he pool masteg a dedicated

plane and are oLANs configuort on these tw

ing up the ph gateway usinrs, they migh

e same network 1, can comgrate a VM to

e all of your Nmanagementer cannot synd NIC for sto

on the same phyured on any of two switches.

hysical netwong a certain Nht not indicat

ork configurammunicate wio a new host

NICs plugget interface onnchronize itsorage, you m

hysical network.the ports and a

ork. For examNIC, XenSerte network

ation is whatith a VM attat, the VM ret

d in to switcn all hosts in s network set

must also conn

. ll

mple, rver

t ached tains

hes, your

ttings nect

Page 20

Connec

When conthan you about theSpanninglistening.

To conn

When con

1. Enabfollow

P

Tm

P

2. Disab

Port senviroyou h

3. Disab

If youissues

4. If usion th

The Battachenabl

Noteconnethe Lshoulguardreceivthe po

cting Xen

nnecting a Xwould when

e Spanning Tg Tree Protoc

nect XenServ

nnecting Xen

ble PortFast owing:

PortFast shou

The port you mode.

Ports used for

ble port secur

security prevonment, VM

have port sec

ble the Spann

u are bondings.

ng a Cisco swhe ports that y

BPDU guardhing a netwoled, the port

e: When Portected to the p

Listening and ld never be rd, which is a fved. This feaort.

Server to

XenServer hon connecting Tree Protocolcol (STP) go

ver hosts to

nServer host

on the ports

uld only be en

plugging Xen

r storage sho

rity on the po

vents multipleMs present mu

urity enabled

ning Tree Pro

g NICs, you

witch, disableyou are plugg

d is a protectirk device to shuts down a

tFast port recport, and it mLearning pheceived. As afeature that sture ensures

Physical

st to a switcha workstatiol (STP) and edirectly from

switch port

ts to switch p

that you are

nabled on po

nServer into

ould have Por

orts that you

e MACs fromultiple MACsd.

otocol on the

should disab

e the PortFasging in XenS

ion setting ina switch porand an admin

ceives BPDUmeans that thhases. In a vala result, Ciscoshuts down athat a bridgi

Switches

h, you must cn to a switch

enabling Portm blocking to

ts

ports, change

plugging in X

orts connecte

cannot be a

rtFast enable

u are plugging

m being preses to the same

e ports that y

ble the Spann

st Bridge ProServer hosts.

n the Spanninrt. When you nistrator mus

Us, the recepthere is a posslid PortFast o switches sua PortFast-ening loop cann

s

configure theh. There are stFast. PortFao forwarding

e the followin

XenServer ho

ed to a single

trunk port a

ed.

g in XenServ

ented to the e port causin

you are plugg

ning Tree Pro

otocol Data U

ng Tree Protou attach a netwst re-enable i

tion indicatesibility of a bconfigurationupport a featnabled port innot form bec

e switch’s pospecific, critiast lets a switg mode; skipp

ng:

osts. Howev

e host.

and the port m

ver hosts.

same port. Ing your port t

ging in XenS

otocol to avo

Unit (BPDU

ocol that prework device it.

s another bribridging loop n, configuratture called Pon the event acause the swi

orts differentlical guidelinetch port runnping learning

er, note the

must be in ac

In a virtual to shut down

erver hosts.

oid failover d

U) guard featu

events you frowith the gua

idge is someh forming durtion BPDUs ortFast BPDa BPDU is itch shuts do

ly es ning g and

ccess

n if

delay

ure

om ard

how ring

U

own

Page 21

5. Chan

Conn

Note

Note: ThPorts.

nge port spee

necting to a 1

e: You do no

his topic was

d settings to

00 MBP/s p

t need to cha

based on an

Static if usin

port set the P

ange speed o

nd enhanced

ng a 10/100 s

PIF speeds to

or duplex sett

from CTX12

switch.

o 100 MBPs

tings when co

23158 -- Cons

static with fu

onnecting to

siderations for

ull duplex.

o 1GB switch

XenServer Sw

hes.

witch

Page 22

This chapnetwork.

Se

U

Exam

This secticonnectin

Designingconfigurinto the dessecurity oplatform

Before coto connec

1. C

2. Ctr

3. C

This secticonfigura

pter providesThis include

egregating tr

Using the man

mple: Ad

ion provides ng VMs to ne

g a XenServeng redundansired networkor performanfrom VM tra

onfiguring nect. A standar

Configuring re

Creating separraffic from V

Creating VMs

ion provides ation options

Cha

s a scenario-bes the followi

affic

nagement ne

dding V

a sample sceetworks, crea

er networkinncy for netwoks. During th

nce reasons (faffic).

etworking onrd network co

edundancy fo

rate storage oVM traffic).

s and connec

you with an s and steps re

apter 3:

based examping:

etwork for tra

Virtual

enario of a siating redunda

g deploymenork availabilithis process, yfor example,

n a pool, you onfiguration

or network a

or manageme

ting them to

example of equired to pu

Sampl

le of how to

affic in a very

Machin

imple networancy, and con

nt may requirty, configurinyou might alsseparating tr

should knowprocess migh

availability.

ent networks

the desired X

that process.ut your virtua

le Netw

connect virt

y small envir

nes to a

rking configunfiguring NI

re several tasng NICs, andso separate draffic for ma

w to which nght require:

s (used to sep

XenServer n

. This sectional machines o

working

tual machine

ronment

a Netwo

uration that iICs.

ks, includingd, ultimately, different typeanaging the X

networks you

parate manag

network(s).

n describes thon the netwo

g Scena

s to a physic

ork

includes

g, for examplconnecting V

es of traffic foXenServer

ur VMs will n

gement or sto

he different ork by using a

ario

al

le, VMs or

need

orage

a

Page 23

sample scput XenS

Creatin

After joinavailabilitcreate red

NIC bonconfiguresame MA

XenServeautomaticteaming.

You can uXenServe

In the illuforms a b

This illustrPrimary MVM traffi

cenario. WhilServer’s netw

ng Networ

ning all hoststy access to thdundancy thr

ding is a teches two NICs AC address an

er supports bcally redirect

use XenCenter automatica

ustration thatbonded pair o

ration shows thManagement Intic.

le the scenariworking featur

rk Resilien

s to your poohe network. rough NIC bo

hnique for intogether so tnd, in the cas

bonding two Ns traffic to th

ter or the xe ally replicates

t follows, theof NICs. Xen

hree pairs of boterface bond, X

io might notres into cont

ncy throug

ol, you may wOne way Xeonding.

ncreasing resithey logicallyse of manage

NICs togetherhe second NI

CLI to creats the bonding

e primary manServer will u

nded NICs, inXenServer uses

directly appltext.

gh Bonds

want to ensurenServer lets

iliency and/oy function as ement interfa

r on a host. IIC. NIC bon

te NIC bondg configurati

anagement inuse this bond

ncluding the prithe other two N

ly to your en

re that any cryou achieve

or bandwidthone network

aces, have on

If one NIC innding is also s

ds. If XenCenion across all

nterface is bod for manage

imary managemNIC bonds and

nvironment, i

ritical servershigh networ

h in which ank card. Both ne IP address

n the bond fsometimes k

nter is managl hosts in the

onded with a ement traffic

ment interface. Ed the two un-b

it is designed

s have high rk availability

n administratoNICs have t

s.

fails, XenServknown as NIC

ging a pool, e pool.

NIC so that c.

Excluding the onded NICs fo

d to

y is to

or the

ver C

it

for

Page 24

Ensuring

When VMNICs in aremain on

Providedbonding cinterface active and

If you bodoes not

Note: Whprovide a

The illusthave to m

This illustrin each hos

g Resilience

M networks ua bond to a sn the networ

you enable bcan balance eNIC to a secd the other re

ond a managehave its own

hile NIC bona single VM w

tration that fomatch.

ration shows host. The NICs i

e through R

use bonded Nsecond (redunrk since their

bonding on Neach VM’s trcond NIC alsemains unus

ement interfan IP address;

nding can prwith the thro

ollows show

ow two NICs iin the bonds con

Redundant S

NICs, traffic ndant switchtraffic fails o

NICs carryinraffic betweeso provides red unless tra

ace, a single IXenServer t

ovide load boughput of tw

s how the ca

in a bonded pannect to differen

Switches

is sent over h) and a singlover to the o

ng only guest n NICs. Likeresilience. Hoaffic fails ove

IP address is treats the two

alancing for wo NICs.

ables and netw

air use the sament switches for

both NICs. le NIC or swother NIC/sw

traffic, bothewise, bondinowever, onlyer to it.

assigned to o NICs as on

traffic from

work configu

e network settinredundancy.

If you connewitch fails, thewitch.

h links are actng the prima

y one link (NI

the bond. Thne logical con

multiple VM

uration for th

ngs, as represen

ect one of the virtual mac

tive and NICary managemIC) in the bo

hat is, each Nnnection.

Ms, it cannot

he bonded N

nted by the netw

e chines

C ment ond is

NIC

NICs

works

Page 25

Connec

Virtual mXenServecreate a VThis conf0.

You needconnect iXenCenteyou need one of th

This illustr

cting a VM

machines conner sends the VVM in XenCefiguration let

d a virtual intit. In environer creates by a VM to con

hose network

ration shows ho

M to a Net

nect to a netwVM’s traffic enter, XenSets VMs conn

terface on a Vnments that cy default whennnect to mul

ks.

ow VMs requi

twork usin

work througthrough the

erver creates ect to an ext

VM for each connect to onn you create ltiple physica

ire a virtual int

ng Virtual

gh a virtual intarget netwoa virtual inteernal networ

separate phynly one physia VM may b

al networks, y

terface for each

Interface

nterface on thork’s associaterface connecrk through th

ysical networical network,

be sufficient fyou must cre

physical netwo

es

hat particularted NIC. By cting the VMhe NIC attach

rk to which y, the virtual ifor your need

eate a virtual

ork to which th

r network. default, when

M to Networkhed to Netw

you want to interface ds. Howeverinterface for

hey need to conn

n you k 0.

work

r, if r each

nect.

Page 26

Some add

Mo

Ege

Wn

Un

Underst

Just like NWhen yougenerate

When XeLocally admanufactOrganizatithe first t

This meadevices o

XenServeconfig:mac-number f

A particuaddress. Cvirtual int

XenServethe VM rbased on

Tip: To oselect the

ditional point

Most, but notnly through X

Each virtual inenerate these

When you creew virtual in

Unlike for theot need to m

tanding Vir

NICs in the pu create a virone for you.

enServer gendministered aturer-specificionally Uniquethree octets in

ans that the Mon your netwo

er generates a-seed parametfor the VIF: 0

ular combinatConsequentlyterface typica

er preserves Mreceives a newthat seed.

obtain the Me virtual inter

ts about virtu

t all, VMs havXenCenter, t

nterface muse automatical

eate a networterface for th

e physical andmatch other V

irtual MAC

physical worlrtual interfac

erates MAC addresses are

c encoding. Ae Identifier (OUndicate whic

MAC addressork.

a MAC addreer of the VM0…6).

tion of a MAy, if you remally gets the s

MAC addresw random M

MAC address rface, and clic

ual interfaces

ve at least onthe VM does

st have a “virlly for you (re

rk in XenCenhat network a

d infrastructuVMs in the po

C Addressin

ld, each virtue, you can ei

addresses aue addresses aAs a result, thUI). Typicallyh company m

ses XenServe

esses at randM and the dev

AC seed and dove a virtualsame MAC a

ses when miMAC address

of a XenServck Propertie

s:

ne virtual intes not need a v

rtual” MAC aecommended

nter, you can automatically

ure layers, thool.

ng

ual interface mther specify a

utomatically, assigned to dehey do not coy, manufactumanufactured

er generates w

om based onvice number

device numbinterface fro

as before.

igrating VMsseed and the

ver VM in Xes.

erface. (If an virtual interf

address. Youd) or specify

specify if yoy, whenever y

he networking

must have itsa MAC addr

it generates levices by a uontain a manurers “burn-id the device.

will not clash

n the randomof the virtua

ber always resom a VM and

s. However, we virtual inter

XenCenter, se

administratoface.)

u can configuy them manua

ou want XenCyou create a

g configurati

s own (virtuaress manually

locally adminisuser, which tynufacturer-spin” MAC add

h with addres

m seed in the al interface (a

sults in the sad recreate it l

when you corfaces get new

elect the VM’

or accesses a

ure XenServeally.

Center to creVM.

ions on VMs

al) MAC addy or let XenS

stered addressesypically lack ecific dresses in wh

sses from har

VM.other-a sequence

ame MAC later, the new

py or clone Vw MAC addr

’s Network t

VM

er to

eate a

do

dress. erver

s.

hich

rdware

w

VMs, resses

tab,

Page 27

Segreg

You can for either

For mostbest pracperformapotential

There are

Sea

Se

Howevernetwork aseparate t

This illustr

While sepall envirothe manaconfigura

gating VM

separate eachr security or p

t environmentice. Not onl

ance by reduccollisions, an

e a variety of

eparating all network not

eparating the

r, VMs will oas the NIC. Ttraffic.

ration shows ho

parating traffonments. In sagement netwation regularl

Traffic fro

h type of trafperformance

nts, Citrix recly does it incrcing competind reducing t

f ways in whic

types of traft used for sto

e managemen

nly use a NICThe illustrati

ow NICs that

fic is a best psmaller envirowork. Howevly.

om Mana

ffic –VM, stoe reasons.

commends serease the secition betweenthe load on t

ch you can se

ffic from eachorage or man

nt traffic from

C for VM traon that follo

are not designa

ractice in largonments, you

ver, Citrix rec

gement a

orage, and ma

egregating VMcurity of the mn traffic typethe primary m

eparate traffi

h other. For nagement traf

m the VM an

affic if they hws shows th

ated for manag

ger environmu may want tcommends ev

and Storag

anagement tr

VM traffic fromanagements for networ

management

ic, including:

example, puffic.

nd storage tra

have a virtualhe best practic

gement or storag

ments, it is noto configure valuating the

ge Traffic

raffic – onto

om managemt network, it rk resources,

interface.

:

utting the virt

affic.

l interface once example o

ge traffic only c

ot an absolutVMs to send

e performanc

o its own netw

ment traffic ascan improvereducing

tual machine

n the same of how you m

carry VM traff

te requiremend their trafficce of this

work

s the e

s on

might

ffic.

nt for c on

Page 28

The scenNICs sha

Scenar

In this scdo this, th

AV

C

The illust

This logicausing netwobond on thto networkswitch.

As showndo not cobecomes

arios that folared by multi

rio 1: Seg

enario, an adhe administra

Attached the nVM traffic, wh

Created virtua

tration that fo

al illustration shork 2 can comm

heir respective h3 can commun

n in previousonfigure a virdedicated fo

llow illustrateiple networks

regating T

dministrator wator:

network cablhich is physic

al interfaces o

ollows show

hows segregatedmunicate with osts and that bnicate with each

s illustration, rtual interfaceor manageme

e both of thes.

Traffic

wants a dedic

les coming frcally isolated

on the same

s these segre

d guest, storage,each other beca

bond connects toh since the corre

not all NICse connecting

ent traffic. Fo

ese concepts:

cated networ

rom the NICd from the sto

networks as

egated networ

, and managemause they are coo the same physresponding NIC

s have virtualg to the manaor example, in

: separating t

rk for manag

Cs to a switchorage and ma

the NICs

rks.

ment networks. onfigured to use sical network. LC 7 on each ho

l interfaces aagement netwn the previou

traffic and se

gement and s

h for a netwoanagement n

In this scenarie the same (corrLikewise, the tst connects to t

associated witwork, the maus illustration

nding traffic

storage traffic

ork to be usenetworks

io, all the VMresponding) NItwo VMs connthe same physic

th them. If yanagement Nn there are N

over

c. To

ed for

Ms IC nected cal

you NIC NICs

Page 29

connectedinterfaces

Note: Citfor each Nassigned t

Scenar

In enviromanagem

In this ex

Xinanco NSpin

Vresp

This confto command back

HoweverXenServeon the salayer and For examorganizattargeted p

In contraconfines

The follo

d to the mans.

trix does notNIC on yourto them for V

rio 2: Usin

onments withment or storag

xample, the o

XenCenter canterface on thnd other comommunicate

Note: XenCepecifically, X

nterface.

VM traffic is aequires no chpecify the VM

figuration letunicate with .

r, this configuer hosts usingme network.controls the

mple, if the VMtion can potepool.

ast, scenario 1any successfu

owing illustra

nagement and

t recommendr host. IdeallyVM traffic.

ng the Ma

h minimal secge networks.

organization u

n connect tohe pool mast

mponents, suwith XenSer

nter only comXenCenter on

also sent on thanges. To reM network th

ts (1) XenSerother hosts

uration has sg this manag This makes

e hypervisors Ms host Web

entially penet

1 on page 28ful external at

tion shows s

d storage net

d assigning IPy, Citrix does

nagemen

curity require

uses the man

o the manageter. This is be

uch as Worklorver.

mmunicates wnly connects

this managemevert to this chat is sharing

rver use the Nand (2) VMs

ecurity impligement netwo

the managemthemselves,

b servers, anyrate your ent

separates thttacks to the

ome VMs se

tworks that d

P addresses (s not recomm

nt Network

ements, you c

nagement net

ment networecause of theoad Balancin

with the pooto the IP add

ment networconfigurationg the manage

NIC configurs transparentl

cations. Worork can commment networvulnerable ty successful tire virtual in

he VM trafficguest netwo

ending their V

do not have c

(that is, creatmend using a

k for VM T

can configure

twork for tw

rk through the IP address ng, can use th

ol master anddress of the m

rk. This is then, create a virement networ

red as the prly forward gu

rkstations homunicate witrk, which ultio any attacksattacks origin

nfrastructure

c from the mrk.

VM traffic ov

correspondin

ting managemany NICs wit

Traffic

e VMs to sha

wo purposes:

he primary mon that NIC

he connection

d not any memaster’s prim

e default conrtual interfacrk.

rimary managuest traffic o

osting XenCeth each otherimately manas originating nating from – or all infra

anagement n

ver the mana

ng virtual

ment interfacth IP address

are the

management . Likewise, hn to

mber serversmary manage

nfiguration ance on the VM

gement interfnto that netw

enter and r because theages the hardfrom the VMoutside the

astructure on

network, whi

agement netw

ces) ses

hosts

s. ment

nd M and

face work

ey are dware Ms.

the

ch

work.

Page 30

This logicatheir traffic

Note: Vi

Ina

Insp

After youparavirtua

Scenar

You mighwith techsame netwprivate ne

Private nesame Xenwith VMscan only

al illustration shc across the ma

rtual interfac

n a Windowsbuilt-in drive

n a Linux VMpeed Xen par

u install the Xalized netwo

rio 3: Isola

ht have specihnically savvywork as reguetworks: sing

etworks do nnServer host s on the samcommunicat

hows how the aanagement netw

ces appear di

s VM, the inier.

M, the NIC aravirtualized

XenServer Tork drivers.

ating VM T

ific types of wy workers, yoular VM traffigle-server pri

not have an uor the same

me switch on tte with VMs

administrator cowork.

fferently in L

itial Window

appears as a snetwork driv

ools (for Win

Traffic on

workloads thou might not fic. XenServeivate network

uplink or a phresource poothe same hoson the same

onfigured the vi

Linux and Wi

s installation

standard Linuver.

ndows guests

a Private

hat require isowant servers

er lets you segks and cross-

hysical NIC. ol. In a privast. In the casvSwitch.

virtual interface

Windows VMs

n has an emul

ux network d

s), Windows

e Network

olation. For es with confidgregate traffi-server privat

Private netwate network, Ve of cross-se

es on VM 1 an

s:

lated networ

device and us

also uses hig

k

example, in edential emploic by creatingte networks.

works connecVMs can onl

erver private

nd VM 3 to se

k device that

ses the high-

gh-speed

environmentoyee data on g two types o

ct VMs on thly communicnetworks, V

end

t uses

ts the

of

he cate

VMs

Page 31

Essentiallhost or a are based

Due to thCreating

Snsethartr

Fno

Private nehave a coexternal: enabling

Note: In networks

To createand the pvSwitcheof XenCe

Note: ToFeature P

Isolating

If you havcreate a sinetwork ioutside w

The illust

ly, a private ngroup of ho

d on the stora

he speed, lab private netw

ecurity. Singetwork traffierver private he private nere on the samraffic across v

Faster trafficeed to interather.

etworks provonnection to they provideconnectivity

previous Xe.

e a cross-servpool must havs, see the Xeenter and des

o use cross-sePack 1 or gre

ng VM Traf

ve some VMingle-server privinterface. It o

world.

tration that fo

network funcsts (pool). Thage speed and

machines anworks might a

gle-server andic (almost liknetworks artwork canno

me physical svirtual interfa

c for connecact with regul

vide connectithe outside w

e a bridge betto resources

enServer relea

ver private neve a vSwitchnServer Adminscribed in the

erver private ater.

ffic on One

Ms on one hovate network. Tonly connect

ollows show

ctions like anhis results ind not limited

nd test enviroalso be desira

d cross-servee creating a ve completely

ot sniff or injeerver and the

faces connect

tions betwelar network a

ivity only betworld. Netwotween virtuals available thr

ases, single-s

etwork, all po Controller cnistrator’s Guie XenServer D

networks, al

e Host

st that you dThis is an intts the virtual

s a private ne

n isolated loc higher speed

d by the netw

onments are able for these

er private netvirtual “stovey isolated fromect traffic inte virtual interted to a netw

een VMs on and switches,

tween VMs oorks with a Nl interfaces anrough the NI

server private

ool servers mconfigured. Fide. Configuri

Distributed Vir

ll the pool se

do not want oternal networmachines on

etwork confi

al area netwod networks s

work bandwid

a good use ce reasons:

tworks can lee pipe”). Privm regular neto the networfaces on bo

work on the s

the same h, they can tra

on a given XNIC (PIF) asnd the NIC cIC.

e networks w

must use the OFor informatiing the vSwirtual Switch C

ervers must b

on your organrk that has nn the host an

igured on on

ork that is losince responsdth or bottlen

case for priva

et you isolatevate networketwork trafficork, even if both sets of VM

same underly

host. Becauseansmit traffic

XenServer hosociation areconnected to

were known a

Open vSwitcion about cotch Controlle

Controller User

be running X

nization’s neo association

nd has no con

ne host.

cal to either ses between Vnecks.

ate networks.

e VMs from oks and cross-c. VMs outsidoth sets of VMs transmit ying NIC.

e VMs do noc faster to eac

st and do noe considered o the network

as internal

ch for netwoonfiguring theer is done ouGuide).

XenServer 5.6

etwork, you cn with a physnnection to t

a VMs

.

other

de of VMs

t ch

ot

k,

rking e utside

6

can sical the

Page 32

This illustrdoes not ha

To create

1. CInN

UNN

2. C

Ifo

Note: ToController

Scenar

Many orgperformaVMs to o

ration shows hoave any connect

e a single-serv

Create a singlen XenCenter

Network and

Unlike when yNIC when yoNIC for conn

Create a virtua

f you want ton the VMs th

o create crossUser Guide.

rio 4: Con

ganizations toance or securone or more V

ow the virtual it to any NICs

ver private n

e-server privr, select the hd then select S

you create exu create priv

nectivity.

al interface o

o isolate the Vhat are on an

s-server priva

necting V

oday configurity reasons. IVLANs on y

interfaces on thsince all traffic

etwork that i

ate network host in the ReSingle-Serve

xternal netwovate networks

on each VM t

VMs’ trafficn external net

ate networks

VMs to Mu

ure VLANs toIf your organyour network

he VMs are onc is sent inside t

is isolated fro

in XenCenteesource paneer Private N

orks, XenCens. This is bec

that specifies

completely, itwork.

, see CTX12

ultiple Link

o logically senization has Vk.

n the single-servthe XenServer

om the exter

er. e. Click the N

Network.

nter does notcause private

s the new pri

if necessary,

27585 – XenS

ked VLAN

eparate their pVLANs, you

ver private netwhost.

rnal network,

Network tab

t prompt younetworks do

ivate network

remove any

Server 5.6 Feat

Ns

physical netwu might want

work. This netw

, you

. Click Add

u to specify ao not require

k.

virtual interf

ture Pack 1 vS

works for eithto connect y

work

a a

faces

Switch

her your

Page 33

To conneto that neVLAN an

This illustrthem, incluVLAN 5one NIC.

While trulet you coto multip(b) create

ect a VM to aetwork. To pnd then creat

ration shows houding VLANs58 through Vir

unk lines fromombine multiple VLANs yoe a XenServer

a VLAN, youperform this cte a virtual in

ow VMs requiNs. In this exam

rtual Interface

m the physicaiple VLANs ou must eithr network fo

u must createconfigurationnterface on th

ire a separate vmple, VM 2 co3. As shown by

al switch canin one XenSer (a) create

or a VLAN th

e a network fn, you create he VM for ea

virtual interfaceonnects to Netwby VM1 and N

n contain mulServer networa separate nehat can acces

for the VLANa separate ex

ach of these n

e for each netwowork 0 throughNIC1, multipl

ltiple 802.1q rk. This meaetwork in Xess all of the d

N and then cxternal netwonetworks.

ork to which yoh Virtual Interfle networks can

VLANs, Xeans that to letenServer for desired VLAN

connect the Vork for each

ou want to connrface 2 and to n connect out th

enServer doet a VM conneach VLAN Ns.

VM

nect

hrough

s not nect

or

Page 34

In the illu

This illustrconnect to VNIC 5 to NIC 5 to

Connecti

1. Ctr FththV

ustration that

ration shows hoVLAN 485 connect to a truconnect to VL

ng a VM to a

Create a physirunk port for

For example, he switch withe pool to a s

VLAN 485.

t follows, the

ow VMs on thand VLAN 2unked switch p

LAN 234. Th

a VLAN requ

ical connectir that VLAN

if you conneth access to Vsimilarly con

e VMs conne

he host connect 234. To achiev

port that include administrator

uires that you

on between t on the switc

ect NIC 7 onVLAN 485, yfigured VLA

ect to a VLAN

to an external ve this, the adm

des VLAN 48r ran a cable fr

u:

the correspoch.

n the XenServyou must run

AN trunk por

N through a

network that tministrator crea85 and a seconfrom the VLA

onding NIC o

ver pool masn a cable fromrt on the sam

trunked swi

the administratated an externand external netw

AN trunk port

on each host

ster to a VLAm NIC 7 on

me switch, wh

tch port.

tor configured tal network thatwork that also to NIC 5.

and the VLA

AN trunk porall other hos

hich can acce

to t uses uses

AN

rt on sts in ess

Page 35

2. En

TV

IntaNan

Ino

AN

N

3. Cto

Intain

Again, beconnect acorrespon

In the illutrunked s

Enable XenSeetwork speci

This means crVLAN tag wh

n XenCenterab, and click

Network. Onnd enter the

n the XenSern all hosts in

After you creaNICs on all th

Note: The nu

Connecting tho that networ

n XenCenterab, and clickinterface.

ecause netwoall hosts in thnding NIC o

ustration thatswitch port.

erver to connifying that VL

reating an exthen you creat

r, select the pthe Add Ne

n the LocatioVLAN tag fo

rver CLI, youn a resource p

ate the netwohe other host

umbers of VL

he appropriatrk on each V

r, this is doneing Add Inte

orking is a pohe pool to thon each host

t follows the

nect to a specLAN tag.

ternal netwote the networ

pool (<your-poetwork buttoon page, specfor the VLAN

u can use thepool. For mo

ork for the Vts so that the

LAN tags mu

te VMs to thVM you want

e by selectingerface and th

ool-level featue VLAN. Thto the VLAN

VMs on mu

cific VLAN o

rk on the Xerk.

ool-name>) in on. In the Necify the NIC

N in the VLA

e pool-vlan-core informati

VLAN on thee correspondi

ust be betwee

he VLAN by to be able to

g the VM in then specifyin

ure, if you cohis means thaN port on the

ultiple hosts in

on the switch

enServer poo

n the Resourew Network wC you physicaAN box.

create xe comion, see the X

e pool mastering NIC on e

en 0 to 4094

configuring o connect to

the Resourceng the VLAN

onnect one hat you must pe switch.

n a pool con

h by creating

ol master and

ce pane, clicwizard, selec

ally connected

mmand to crXenServer Adm

r, XenServereach host

.

a virtual intethe VLAN.

e pane, clickinN network wh

host to a VLAphysically con

nnect to a VL

g an external

d specifying t

k the Netwoct External d to the swit

reate the VLAministrator’s G

r configures t

erface that po

ng the Netwhen you creat

AN, you musnnect the

LAN through

the

ork

ch

AN Guide.

the

oints

work te the

st

h a

Page 36

This illustrmatch, NIthe pool mamust also p

Before co

The p

The p

Port s

The p

XenServedoes not

ration shows hoIC 7 on all hosaster. However,physically conne

onfiguring a V

port on the sw

port on the sw

security cann

port designat

er lets you crlimit the num

ow, because Xests in the pool wr, for the VMs ect NIC 7 on e

VLAN, ensu

witch connec

witch must b

not be set on

ted as trunk s

eate multiplember of VLA

enServer automwill be configureon the member

each host to a t

ure the switch

cted to each

be configured

the trunk po

should be ass

e networks anANs you can

matically synchrred with the samr servers to be atrunk port on t

h on your VL

XenServer h

d for 802.1q

ort.

signed a nativ

nd VLAN neconnect to V

ronizes the netwme network andable to connect the switch that

LAN network

host must be

encapsulatio

ve VLAN; u

etworks on thVMs. Instead

work settings ind VLAN settto the VLAN

t can access VL

k is configur

configured a

on.

se 1 as defau

he same NICd, the limit co

n pools so that tings as NIC 7N, the administLAN 485.

red as follows

as trunk port

ult.

C. XenServeromes from th

they 7 on trator

s:

t.

r he

Page 37

802.1q stthe VMs

Note: If number t

For an exVLAN Nsupport,

Tip: To vnetwork, the VLAN

Creating

XenServe

1. Bn

2. In

3. WV

Creating

You can haccess pomanagem

XenServemanagem

andard is 409to the VLAN

a Native VLto a VM on t

xample of a tNetworking. Fsee the docu

verify that yoyou can use

N tags that a

g VLANs o

er supports c

Bond the twoetwork in Xe

n XenCenter

a) The V

b) The N

You mighexample, V

When you creVLAN tag as

g VLANs o

have a singleort. If you wament interface

er 5.6 Featurement interface

96. You add Ns by specify

LAN is used othe XenServe

tested workinor more infomentation fo

ou have confithe packet sn

are transmitte

on Bonded

connecting to

NICs togethenCenter.

r, for example

VLAN’s tag

NIC bond as

ht want to namVLAN 25).

eate the virtuthe network

on the Prim

e VLAN on tant to use a te can use tha

e Pack 1 doee.

an external nying that netw

on the switcher.

ng model of aormation aboor your switc

figured the Xniffing softwed across the

d Networks

o VLANs fro

her. After yo

e, create an E

the NIC

me this exter

al interface f.

mary Manag

the primary mtrunk, either

at or you mak

es not suppor

network for ework in the V

h trunk port,

a VLAN conout configurinches.

XenServer hosware included

switch to th

om bonded N

u have done

External Ne

rnal network

for the VM, s

gement Int

management you define a

ke the port a

rt having a V

each VLAN VM’s virtual

then you can

nfiguration, sng VLANs o

st to commud with your Nhe XenServer

NICs. To do

so, the NIC

etwork speci

k the same na

specify the ex

nterface

interface, ana default VLAfull access p

VLAN trunk

to the host ainterface.

nnot assign t

see CTX1234on your switc

unicate acrossNICs to captur.

so, do the fo

C bond appea

ifying the fol

ame as the VL

xternal netwo

nd this VLANAN on that tport.

port on the p

and then con

that VLAN

489 -- XenSerch and 802.1q

s the correct ure and displ

ollowing:

ars as a bond

llowing:

LAN (for

ork with the

N can be on runk and the

primary

nnect

rver q

lay

ed

an e

Page 38

Revision

1

2

n Date

Decem2010

Feb 2

mber 30,

5, 2011

Commen

Initial rele

Added infserver privchanges. Ccross-refer

ts

ase.

formation abvate networkClarity improrence.

out VLANs,ks. Added intovements to i

Versio

, MAC addretroductory chillustrations.

on Histo

esses, and sinhapter. StylistFixed broken

ory

ngle-tic n

Page 39

About Ci

Citrix Syssoftware Delivery simplify cuser, in an99 percenprosumercountries

©2010-20Repeater™Delivery may be retrademark

itrix

stems, Inc. (Nas a service tCenter, Citricomputing fony location ont of Fortuners worldwide. Founded in

011 Citrix Sy™, Citrix ReCenter™ areegistered in tks and regist

NASDAQ:CTtechnologies ix Cloud Cenor millions ofon any devicee Global 500e. Citrix partnn 1989, annua

ystems, Inc. Aepeater™, HDe trademarks he United Stered tradema

TXS) is the lfor more tha

nter (C3) andf users, delive. Citrix custo enterprises,

ners with oveal revenue in

All rights reseDX™, XenSof Citrix Sys

tates Patent aarks are prop

leading provian 230,000 o Citrix Onlin

vering applicaomers includand hundred

er 10,000 comn 2008 was $1

erved. Citrix®Server™, Xenstems, Inc. anand Trademaperty of their

ider of virtuaorganizationsne Services pations as an ode the world’ds of thousanmpanies worl1.6 billion.

®, Access GnApp™, Xennd/or one oark Office anr respective o

alization, netw worldwide. roduct famil

on-demand s’s largest Intends of small rldwide in mo

Gateway™, BnDesktop™ r more of its

nd in other coowners.

working andIts Citrix

lies radically service to anyernet companbusinesses a

ore than 100

ranch and Citrix

s subsidiariesountries. All

d

y nies, nd

, and other