Unsolved
This post is more than 5 years old
14 Posts
0
2041
vxRail and the DMZ
Wizards,
I have a customer considering a four node cluster of appliances. The customer is running a software with the following architecture (pic).
The load balancers and the Apache needs to be in the DMZ, and is specifically the only portion of solution available from internet. The DMZ needs to have physical separate network interface from that of the rest of the solution. The general expectation is that “1” VXRail system would support the DMZ requirements while the other 3 support the rest of the applications – Tomcat, DB, VCenter, SFTP, WSUS, etc.
Is this possible with VxRail? My guess is no....
kwmt
4 Operator
4 Operator
•
883 Posts
1
February 21st, 2018 17:00
You can use additional PCIe NIC with VxRail DELL model. You can create a new vDS by physically separating the network.
The network guide P8-9 are helpful.
https://www.emc.com/collateral/guide/h15300-vxrail-network-guide.pdf
GBlack3
18 Posts
0
February 22nd, 2018 07:00
as Kawaman said in the newer generations you can now add a pci nic (previous gen there was no option for this and you would have had to use a separate vxrail). From the doc that kawaman referenced:
"VxRail initialization process will not touch an additional PCI-e NIC. Customers can use the ports for their own purposes such as VM networks, iSCSI, or NFS, etc."
So you will need to manually configure after deployment. I have no experience with this so i'm not sure what an upgrade would look like.