SlideShare una empresa de Scribd logo
1 de 1
Descargar para leer sin conexión
Public Subnet: 209.229.131.0/24
              Example Host Network Layout                       Management Subnet: 192.168.1.0/24
                       (Physical)                               Storage Subnet: 172.16.0.0/24
                                                                Default Guest Subnet: 10.0.1.0/24


                                                  Network Terminology
Public Subnet – Network directly on either the public internet or with public access. If CloudStack is in a completely
private environment (e.g. inside a corporate network) this is the outward facing address assigned to the virtual
router that all traffic is NAT’d through

Management Subnet – Somewhat self explanatory but this is the network that the management server lives on, as
well as your VM hosts and anything else for CloudStack to management.

Storage – As it relates to CloudStack, this is an optional network dedicated to secondary storage. If not specified, the
management network will be assumed for this role.

Guest Subnet – Unless a custom network is created, this subnet is used for the network and VLAN created for the
guest VMs within a domain, project, and/or account.

Link Local – A special type of virtual interface that exists only between the host and VM. This interface is created on
all system VMs as a way to interact with it securely. *NOTE: VMware does not support link-local interfaces so this
interface will not exist if you are running VMware.

                    Color Key                                                           Network Terminology
                                                     NOTICE: This documentation is for example/education purposes
                Public
                                                     only. Your environment may differ either completely or in small
         Management
                                                     ways from the examples provided here.
              Storage
                Guest
            Link-local


*Note – Where a CIDR is specified it is because those virtual interfaces are created and managed by CloudStack so IP
address assignment is done at a guest (VM) level and therefore no configuration is required on the hypervisor
directly. It is noted for reference. Where an IP address is specified, that interface would be configured on the
hypervisor/host directly to provide that host with direct access to that network.


                                              Basic Networking
                                           Host with 2 Physical NICs

       nic0                                                                            VLAN        100
                                                                        management




                                                                                       IP ADDR     192.168.1.20
                                                                                       GATEWAY     192.168.1.1
                                                                                       VLAN        1

                                                                                       NETWORK     storage
                                                                        storage




                                                                                       IP ADDR     172.16.0.20
                                                                                       GATEWAY
                                                                                       NETWORK     management

                                                                                       NETWORK     public
                                                                        public/guest




       nic1                                                                            IP/CIDR*    209.229.131.0/24
                                                                                       GATEWAY     209.229.131.1
                                                                                       VLAN        500

*Basic Networking Note – In basic networking the “guest” and “public” networks are the same as guests are directly
assigned public addresses and guest segregation/security is achieved through the use of security groups. In
advanced networking mode guest segregation is achieved through the use of VLANs.




                                            Advanced Networking
                                           Host with 2 Physical NICs

       nic0                                                                            NETWORK     management
                                                                        management




                                                                                       IP ADDR     192.168.1.20
                                                                                       GATEWAY     192.168.1.1
                                                                                       VLAN        1

                                                                                       NETWORK     storage
                                                                        storage




                                                                                       IP ADDR     172.16.0.20
                                                                                       GATEWAY
                                                                                       VLAN        100

                                                                                       NETWORK     public
                                                                                       IP/CIDR*    209.229.131.0/24
                                                                        public




                                                                                       GATEWAY     209.229.131.1
                                                                                       VLAN        500

                                                                                       NETWORK     guest
                                                                                       IP/CIDR*    10.0.1.0/24
                                                                        guest




       nic1
                                                                                       GATEWAY     10.0.1.1
                                                                                       VLAN        600-799



                                            Advanced Networking
                                           Host with 4 Physical NICs

       nic0                                                                            NETWORK     management
                                                                        management




                                                                                       IP ADDR     192.168.1.20
                                                                                       GATEWAY     192.168.1.1
                                                                                       VLAN        1


       nic1                                                                            NETWORK     public
                                                                                       IP/CIDR*    209.229.131.0/24
                                                                        public




                                                                                       GATEWAY     209.229.131.1
                                                                                       VLAN        500

       nic2
                                                                                       NETWORK     guest
                                                                                       IP/CIDR*    10.0.1.0/24
                                                                        guest




                                                                                       GATEWAY     10.0.1.1
                                                                                       VLAN        600-799
       nic3
                                                                                       NETWORK     storage
                                                                                                   172.16.0.20
                                                                        storage




                                                                                       IP ADDR
                                                                                                   172.16.1.20
                                                                                       GATEWAY
                                                                                       VLAN        100



Note – In this example we are doing MPIO to the storage network. NIC bonding for performance and/or redundancy
would work as well but would include just a single IP address instead of 2. Another alternative would be to connect
nic2 to a dedicated guest network and nic3 to storage.

Más contenido relacionado

La actualidad más candente

Aerohive datasheet br200
Aerohive datasheet br200Aerohive datasheet br200
Aerohive datasheet br200Altaware, Inc.
 
Draytek Databook 2015 v2
Draytek Databook 2015 v2Draytek Databook 2015 v2
Draytek Databook 2015 v2DrayTek
 
tplink manual best
tplink manual best tplink manual best
tplink manual best bhandaridaka
 
Welcome to International Journal of Engineering Research and Development (IJERD)
Welcome to International Journal of Engineering Research and Development (IJERD)Welcome to International Journal of Engineering Research and Development (IJERD)
Welcome to International Journal of Engineering Research and Development (IJERD)IJERD Editor
 
Ies5000 config guide
Ies5000 config guideIes5000 config guide
Ies5000 config guideAdvanced comm
 
Cisco Catalyst 2960-X Datasheet
Cisco Catalyst 2960-X DatasheetCisco Catalyst 2960-X Datasheet
Cisco Catalyst 2960-X Datasheet3Anetwork com
 
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...Netgear Italia
 
KVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdf
KVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdfKVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdf
KVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdfRikyFitriadi1
 
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...Emulex Corporation
 
Cisco Small Business Wireless Portfolio
Cisco Small Business Wireless PortfolioCisco Small Business Wireless Portfolio
Cisco Small Business Wireless Portfoliosz0755520
 
Thomson datenblatt
Thomson datenblattThomson datenblatt
Thomson datenblattdokumentos
 
Databook 2017 v2
Databook 2017 v2Databook 2017 v2
Databook 2017 v2DrayTek
 

La actualidad más candente (17)

Aerohive datasheet br200
Aerohive datasheet br200Aerohive datasheet br200
Aerohive datasheet br200
 
Draytek Databook 2015 v2
Draytek Databook 2015 v2Draytek Databook 2015 v2
Draytek Databook 2015 v2
 
Aerohive AP 170
Aerohive AP 170Aerohive AP 170
Aerohive AP 170
 
tplink manual best
tplink manual best tplink manual best
tplink manual best
 
Welcome to International Journal of Engineering Research and Development (IJERD)
Welcome to International Journal of Engineering Research and Development (IJERD)Welcome to International Journal of Engineering Research and Development (IJERD)
Welcome to International Journal of Engineering Research and Development (IJERD)
 
Ies5000 config guide
Ies5000 config guideIes5000 config guide
Ies5000 config guide
 
Router and Switches Cisco
Router and Switches CiscoRouter and Switches Cisco
Router and Switches Cisco
 
Cisco Catalyst 2960-X Datasheet
Cisco Catalyst 2960-X DatasheetCisco Catalyst 2960-X Datasheet
Cisco Catalyst 2960-X Datasheet
 
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...
 
KVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdf
KVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdfKVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdf
KVM_over_IP_Matrix_System_Implementation_Guide_20190618.pdf
 
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...
 
10.) vxlan
10.) vxlan10.) vxlan
10.) vxlan
 
Cisco Small Business Wireless Portfolio
Cisco Small Business Wireless PortfolioCisco Small Business Wireless Portfolio
Cisco Small Business Wireless Portfolio
 
Summit x460
Summit x460Summit x460
Summit x460
 
Ies5000 usg
Ies5000 usgIes5000 usg
Ies5000 usg
 
Thomson datenblatt
Thomson datenblattThomson datenblatt
Thomson datenblatt
 
Databook 2017 v2
Databook 2017 v2Databook 2017 v2
Databook 2017 v2
 

Similar a Cloudstack example host networking

Cloudstack System VMs
Cloudstack System VMsCloudstack System VMs
Cloudstack System VMsClayton Weise
 
How–to setup wireless client bridge as CPE for connect WISP and using broadba...
How–to setup wireless client bridge as CPE for connect WISP and using broadba...How–to setup wireless client bridge as CPE for connect WISP and using broadba...
How–to setup wireless client bridge as CPE for connect WISP and using broadba...Tũi Wichets
 
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...Yury Chemerkin
 
Microservices for Enterprises - Consistent Network & Security services for Co...
Microservices for Enterprises - Consistent Network & Security services for Co...Microservices for Enterprises - Consistent Network & Security services for Co...
Microservices for Enterprises - Consistent Network & Security services for Co...Dhananjay Sampath
 
Indian railways presentation
Indian railways presentationIndian railways presentation
Indian railways presentationgps2012
 
Software-Based Networking & Security for the Cloud
Software-Based Networking & Security for the CloudSoftware-Based Networking & Security for the Cloud
Software-Based Networking & Security for the CloudMatt Wolpin
 
VXLAN: Enhancements and Network Integration
VXLAN: Enhancements and Network Integration VXLAN: Enhancements and Network Integration
VXLAN: Enhancements and Network Integration Eddie Parra
 
VMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep DiveVMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep DiveVMworld
 
Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)
Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)
Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)Ari Zoldan
 
Avaya VoIP on Cisco Best Practices by PacketBase
Avaya VoIP on Cisco Best Practices by PacketBaseAvaya VoIP on Cisco Best Practices by PacketBase
Avaya VoIP on Cisco Best Practices by PacketBasePacketBase, Inc.
 
Build Redundant and Resilient Networks with Micro-Segmentation
Build Redundant and Resilient Networks with Micro-SegmentationBuild Redundant and Resilient Networks with Micro-Segmentation
Build Redundant and Resilient Networks with Micro-SegmentationWestermo Network Technologies
 
HiGuard Pro installation
HiGuard Pro installationHiGuard Pro installation
HiGuard Pro installationsharetech
 
PLNOG 8: Piotr Głaska - Data Center Networking - Trends and suggestions
PLNOG 8: Piotr Głaska -  Data Center Networking - Trends and suggestions PLNOG 8: Piotr Głaska -  Data Center Networking - Trends and suggestions
PLNOG 8: Piotr Głaska - Data Center Networking - Trends and suggestions PROIDEA
 
DCSF 19 Data Center Networking with Containers
DCSF 19 Data Center Networking with ContainersDCSF 19 Data Center Networking with Containers
DCSF 19 Data Center Networking with ContainersDocker, Inc.
 

Similar a Cloudstack example host networking (20)

Cloudstack System VMs
Cloudstack System VMsCloudstack System VMs
Cloudstack System VMs
 
p10
p10p10
p10
 
p10
p10p10
p10
 
How–to setup wireless client bridge as CPE for connect WISP and using broadba...
How–to setup wireless client bridge as CPE for connect WISP and using broadba...How–to setup wireless client bridge as CPE for connect WISP and using broadba...
How–to setup wireless client bridge as CPE for connect WISP and using broadba...
 
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
 
Microservices for Enterprises - Consistent Network & Security services for Co...
Microservices for Enterprises - Consistent Network & Security services for Co...Microservices for Enterprises - Consistent Network & Security services for Co...
Microservices for Enterprises - Consistent Network & Security services for Co...
 
10209
1020910209
10209
 
Indian railways presentation
Indian railways presentationIndian railways presentation
Indian railways presentation
 
Ens202
Ens202Ens202
Ens202
 
Software-Based Networking & Security for the Cloud
Software-Based Networking & Security for the CloudSoftware-Based Networking & Security for the Cloud
Software-Based Networking & Security for the Cloud
 
VXLAN: Enhancements and Network Integration
VXLAN: Enhancements and Network Integration VXLAN: Enhancements and Network Integration
VXLAN: Enhancements and Network Integration
 
VMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep DiveVMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
 
Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)
Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)
Top Global 3G Phoebus Wireless Router (MB6000) (Quantum-Wireless.com)
 
Avaya VoIP on Cisco Best Practices by PacketBase
Avaya VoIP on Cisco Best Practices by PacketBaseAvaya VoIP on Cisco Best Practices by PacketBase
Avaya VoIP on Cisco Best Practices by PacketBase
 
Build Redundant and Resilient Networks with Micro-Segmentation
Build Redundant and Resilient Networks with Micro-SegmentationBuild Redundant and Resilient Networks with Micro-Segmentation
Build Redundant and Resilient Networks with Micro-Segmentation
 
CloudStack and SDN
CloudStack and SDNCloudStack and SDN
CloudStack and SDN
 
HiGuard Pro installation
HiGuard Pro installationHiGuard Pro installation
HiGuard Pro installation
 
PLNOG 8: Piotr Głaska - Data Center Networking - Trends and suggestions
PLNOG 8: Piotr Głaska -  Data Center Networking - Trends and suggestions PLNOG 8: Piotr Głaska -  Data Center Networking - Trends and suggestions
PLNOG 8: Piotr Głaska - Data Center Networking - Trends and suggestions
 
DCSF 19 Data Center Networking with Containers
DCSF 19 Data Center Networking with ContainersDCSF 19 Data Center Networking with Containers
DCSF 19 Data Center Networking with Containers
 
Network Management in System Center 2012 SP1 - VMM
Network Management in System Center 2012  SP1 - VMM Network Management in System Center 2012  SP1 - VMM
Network Management in System Center 2012 SP1 - VMM
 

Más de buildacloud

The Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep VittalThe Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep Vittalbuildacloud
 
Policy Based SDN Solution for DC and Branch Office by Suresh Boddapati
Policy Based SDN Solution for DC and Branch Office by Suresh BoddapatiPolicy Based SDN Solution for DC and Branch Office by Suresh Boddapati
Policy Based SDN Solution for DC and Branch Office by Suresh Boddapatibuildacloud
 
L4-L7 services for SDN and NVF by Youcef Laribi
L4-L7 services for SDN and NVF by Youcef LaribiL4-L7 services for SDN and NVF by Youcef Laribi
L4-L7 services for SDN and NVF by Youcef Laribibuildacloud
 
Jenkins, jclouds, CloudStack, and CentOS by David Nalley
Jenkins, jclouds, CloudStack, and CentOS by David NalleyJenkins, jclouds, CloudStack, and CentOS by David Nalley
Jenkins, jclouds, CloudStack, and CentOS by David Nalleybuildacloud
 
Intro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew KirchIntro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew Kirchbuildacloud
 
Guaranteeing Storage Performance by Mike Tutkowski
Guaranteeing Storage Performance by Mike TutkowskiGuaranteeing Storage Performance by Mike Tutkowski
Guaranteeing Storage Performance by Mike Tutkowskibuildacloud
 
Cloud Application Blueprints with Apache Brooklyn by Alex Henevald
Cloud Application Blueprints with Apache Brooklyn by Alex HenevaldCloud Application Blueprints with Apache Brooklyn by Alex Henevald
Cloud Application Blueprints with Apache Brooklyn by Alex Henevaldbuildacloud
 
Introduction to Apache CloudStack by David Nalley
Introduction to Apache CloudStack by David NalleyIntroduction to Apache CloudStack by David Nalley
Introduction to Apache CloudStack by David Nalleybuildacloud
 
Managing infrastructure with Application Policy by Mike Cohen
Managing infrastructure with Application Policy by Mike CohenManaging infrastructure with Application Policy by Mike Cohen
Managing infrastructure with Application Policy by Mike Cohenbuildacloud
 
Intro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew KirchIntro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew Kirchbuildacloud
 
Monitoring CloudStack in context with Converged Infrastructure by Mike Turnlund
Monitoring CloudStack in context with Converged Infrastructure by Mike TurnlundMonitoring CloudStack in context with Converged Infrastructure by Mike Turnlund
Monitoring CloudStack in context with Converged Infrastructure by Mike Turnlundbuildacloud
 
Rest api design by george reese
Rest api design by george reeseRest api design by george reese
Rest api design by george reesebuildacloud
 
Enterprise grade firewall and ssl termination to ac by will stevens
Enterprise grade firewall and ssl termination to ac by will stevensEnterprise grade firewall and ssl termination to ac by will stevens
Enterprise grade firewall and ssl termination to ac by will stevensbuildacloud
 
State of the cloud by reuven cohen
State of the cloud by reuven cohenState of the cloud by reuven cohen
State of the cloud by reuven cohenbuildacloud
 
Securing Your Cloud With the Xen Hypervisor by Russell Pavlicek
Securing Your Cloud With the Xen Hypervisor by Russell PavlicekSecuring Your Cloud With the Xen Hypervisor by Russell Pavlicek
Securing Your Cloud With the Xen Hypervisor by Russell Pavlicekbuildacloud
 
DevCloud - Setup and Demo on Apache CloudStack
DevCloud - Setup and Demo on Apache CloudStack DevCloud - Setup and Demo on Apache CloudStack
DevCloud - Setup and Demo on Apache CloudStack buildacloud
 
Cloud Network Virtualization with Juniper Contrail
Cloud Network Virtualization with Juniper ContrailCloud Network Virtualization with Juniper Contrail
Cloud Network Virtualization with Juniper Contrailbuildacloud
 
Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...
Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...
Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...buildacloud
 
Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski
Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski
Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski buildacloud
 
CloudStack University by Sebastien Goasguen
CloudStack University by Sebastien GoasguenCloudStack University by Sebastien Goasguen
CloudStack University by Sebastien Goasguenbuildacloud
 

Más de buildacloud (20)

The Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep VittalThe Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep Vittal
 
Policy Based SDN Solution for DC and Branch Office by Suresh Boddapati
Policy Based SDN Solution for DC and Branch Office by Suresh BoddapatiPolicy Based SDN Solution for DC and Branch Office by Suresh Boddapati
Policy Based SDN Solution for DC and Branch Office by Suresh Boddapati
 
L4-L7 services for SDN and NVF by Youcef Laribi
L4-L7 services for SDN and NVF by Youcef LaribiL4-L7 services for SDN and NVF by Youcef Laribi
L4-L7 services for SDN and NVF by Youcef Laribi
 
Jenkins, jclouds, CloudStack, and CentOS by David Nalley
Jenkins, jclouds, CloudStack, and CentOS by David NalleyJenkins, jclouds, CloudStack, and CentOS by David Nalley
Jenkins, jclouds, CloudStack, and CentOS by David Nalley
 
Intro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew KirchIntro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew Kirch
 
Guaranteeing Storage Performance by Mike Tutkowski
Guaranteeing Storage Performance by Mike TutkowskiGuaranteeing Storage Performance by Mike Tutkowski
Guaranteeing Storage Performance by Mike Tutkowski
 
Cloud Application Blueprints with Apache Brooklyn by Alex Henevald
Cloud Application Blueprints with Apache Brooklyn by Alex HenevaldCloud Application Blueprints with Apache Brooklyn by Alex Henevald
Cloud Application Blueprints with Apache Brooklyn by Alex Henevald
 
Introduction to Apache CloudStack by David Nalley
Introduction to Apache CloudStack by David NalleyIntroduction to Apache CloudStack by David Nalley
Introduction to Apache CloudStack by David Nalley
 
Managing infrastructure with Application Policy by Mike Cohen
Managing infrastructure with Application Policy by Mike CohenManaging infrastructure with Application Policy by Mike Cohen
Managing infrastructure with Application Policy by Mike Cohen
 
Intro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew KirchIntro to Zenoss by Andrew Kirch
Intro to Zenoss by Andrew Kirch
 
Monitoring CloudStack in context with Converged Infrastructure by Mike Turnlund
Monitoring CloudStack in context with Converged Infrastructure by Mike TurnlundMonitoring CloudStack in context with Converged Infrastructure by Mike Turnlund
Monitoring CloudStack in context with Converged Infrastructure by Mike Turnlund
 
Rest api design by george reese
Rest api design by george reeseRest api design by george reese
Rest api design by george reese
 
Enterprise grade firewall and ssl termination to ac by will stevens
Enterprise grade firewall and ssl termination to ac by will stevensEnterprise grade firewall and ssl termination to ac by will stevens
Enterprise grade firewall and ssl termination to ac by will stevens
 
State of the cloud by reuven cohen
State of the cloud by reuven cohenState of the cloud by reuven cohen
State of the cloud by reuven cohen
 
Securing Your Cloud With the Xen Hypervisor by Russell Pavlicek
Securing Your Cloud With the Xen Hypervisor by Russell PavlicekSecuring Your Cloud With the Xen Hypervisor by Russell Pavlicek
Securing Your Cloud With the Xen Hypervisor by Russell Pavlicek
 
DevCloud - Setup and Demo on Apache CloudStack
DevCloud - Setup and Demo on Apache CloudStack DevCloud - Setup and Demo on Apache CloudStack
DevCloud - Setup and Demo on Apache CloudStack
 
Cloud Network Virtualization with Juniper Contrail
Cloud Network Virtualization with Juniper ContrailCloud Network Virtualization with Juniper Contrail
Cloud Network Virtualization with Juniper Contrail
 
Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...
Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...
Ian rae panel cloud stack & cloud storage where are we at, and where do we ne...
 
Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski
Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski
Troubleshooting Strategies for CloudStack Installations by Kirk Kosinski
 
CloudStack University by Sebastien Goasguen
CloudStack University by Sebastien GoasguenCloudStack University by Sebastien Goasguen
CloudStack University by Sebastien Goasguen
 

Cloudstack example host networking

  • 1. Public Subnet: 209.229.131.0/24 Example Host Network Layout Management Subnet: 192.168.1.0/24 (Physical) Storage Subnet: 172.16.0.0/24 Default Guest Subnet: 10.0.1.0/24 Network Terminology Public Subnet – Network directly on either the public internet or with public access. If CloudStack is in a completely private environment (e.g. inside a corporate network) this is the outward facing address assigned to the virtual router that all traffic is NAT’d through Management Subnet – Somewhat self explanatory but this is the network that the management server lives on, as well as your VM hosts and anything else for CloudStack to management. Storage – As it relates to CloudStack, this is an optional network dedicated to secondary storage. If not specified, the management network will be assumed for this role. Guest Subnet – Unless a custom network is created, this subnet is used for the network and VLAN created for the guest VMs within a domain, project, and/or account. Link Local – A special type of virtual interface that exists only between the host and VM. This interface is created on all system VMs as a way to interact with it securely. *NOTE: VMware does not support link-local interfaces so this interface will not exist if you are running VMware. Color Key Network Terminology NOTICE: This documentation is for example/education purposes Public only. Your environment may differ either completely or in small Management ways from the examples provided here. Storage Guest Link-local *Note – Where a CIDR is specified it is because those virtual interfaces are created and managed by CloudStack so IP address assignment is done at a guest (VM) level and therefore no configuration is required on the hypervisor directly. It is noted for reference. Where an IP address is specified, that interface would be configured on the hypervisor/host directly to provide that host with direct access to that network. Basic Networking Host with 2 Physical NICs nic0 VLAN 100 management IP ADDR 192.168.1.20 GATEWAY 192.168.1.1 VLAN 1 NETWORK storage storage IP ADDR 172.16.0.20 GATEWAY NETWORK management NETWORK public public/guest nic1 IP/CIDR* 209.229.131.0/24 GATEWAY 209.229.131.1 VLAN 500 *Basic Networking Note – In basic networking the “guest” and “public” networks are the same as guests are directly assigned public addresses and guest segregation/security is achieved through the use of security groups. In advanced networking mode guest segregation is achieved through the use of VLANs. Advanced Networking Host with 2 Physical NICs nic0 NETWORK management management IP ADDR 192.168.1.20 GATEWAY 192.168.1.1 VLAN 1 NETWORK storage storage IP ADDR 172.16.0.20 GATEWAY VLAN 100 NETWORK public IP/CIDR* 209.229.131.0/24 public GATEWAY 209.229.131.1 VLAN 500 NETWORK guest IP/CIDR* 10.0.1.0/24 guest nic1 GATEWAY 10.0.1.1 VLAN 600-799 Advanced Networking Host with 4 Physical NICs nic0 NETWORK management management IP ADDR 192.168.1.20 GATEWAY 192.168.1.1 VLAN 1 nic1 NETWORK public IP/CIDR* 209.229.131.0/24 public GATEWAY 209.229.131.1 VLAN 500 nic2 NETWORK guest IP/CIDR* 10.0.1.0/24 guest GATEWAY 10.0.1.1 VLAN 600-799 nic3 NETWORK storage 172.16.0.20 storage IP ADDR 172.16.1.20 GATEWAY VLAN 100 Note – In this example we are doing MPIO to the storage network. NIC bonding for performance and/or redundancy would work as well but would include just a single IP address instead of 2. Another alternative would be to connect nic2 to a dedicated guest network and nic3 to storage.