athena007
18-02-2015, 19:22
Thanks for the configuration tips.
Well I have a vsphere environment. I have installed a distributed switch via vcenter server virtual appliance.
On this distributed switch I have created a portgroup with vlan set to none. (The uplink is set to vlan trunking 0-4094).
So this portgroup has a vmk0 connected for management. It also has virtual nic of the outside interface of virtual firewall as well as any direct facing VMs.
At first only the host (via vmk0) was able to pass traffic then I noticed by default the first management vmk (i.e. hypervisor management nic) has the same mac address as the connected physical nic of the dedicated server.
So i decided to investigate by swapping the mac address of the vmk0 of the hypervisor and my virtual firewall's outside facing virtual nic mac address. I then noticed traffic was reaching the virtual firewall but no more to the vmk0 with the changed mac.
I then concluded that my configurations are ok except that OVH is blocking mac entries which affects IPv6
I have another server which is subscribed to the soyoustart service and interestingly i dont have that issue. Is it specific to the OVH service?
Well I have a vsphere environment. I have installed a distributed switch via vcenter server virtual appliance.
On this distributed switch I have created a portgroup with vlan set to none. (The uplink is set to vlan trunking 0-4094).
So this portgroup has a vmk0 connected for management. It also has virtual nic of the outside interface of virtual firewall as well as any direct facing VMs.
At first only the host (via vmk0) was able to pass traffic then I noticed by default the first management vmk (i.e. hypervisor management nic) has the same mac address as the connected physical nic of the dedicated server.
So i decided to investigate by swapping the mac address of the vmk0 of the hypervisor and my virtual firewall's outside facing virtual nic mac address. I then noticed traffic was reaching the virtual firewall but no more to the vmk0 with the changed mac.
I then concluded that my configurations are ok except that OVH is blocking mac entries which affects IPv6
I have another server which is subscribed to the soyoustart service and interestingly i dont have that issue. Is it specific to the OVH service?