Hello!

I am currently building a new virtualization architecture, but I need help for the network configuration.

- Hardware :

- 2x Powerconnect 6248

- 3x PowerEdge R710 with 8x Nics

- 2x PowerEdge R410 (Firewall)

 I have 3 VLAN :

- VLAN 2 : DMZ (10.98.X.X) (VM Network)

- VLAN 3 : PUBLIC (10.100.X.X)

- VLAN 4 : ADMIN (10.94.X.X)

- 3 LAGs between my 3 esxs servers for Vm Network (HA, FT...)

I need this configuration for
my two switchs, so I think setting up a LAG/Trunk between my two switch. I
don't know if I must do one trunk by VLAN or a global trunk where my
VLAN can passed.

After that, I must 3 LAG for my 3 ESX server corresponding to my VM Network. 6x Nics per servers.

I have few question :

What type of switch port mode and lag/trunk mode must I use? Access, General, Trunk? I must used tagged packets?

Here, a schema of my architecture :

I have tried to realised a first configuration with only one switch, so I have do that :

But I have an issue, my VMs can communicat with outside, but I can't access them only on the VLAN 2 (DMZ).

LAG between my 3 esxi :

LAG configuration :

VLAN 4 (ADMIN) :

VLAN 2 (DMZ) :

VLAN 3 (PUBLIC) :

VLAN LAG Settings :

My running config :

!Current Configuration:
!System Description "PowerConnect 6248, 3.3.1.10, VxWorks 6.5"
!System Software Version 3.3.1.10
!Cut-through mode is configured as disabled
!
configure
vlan database
vlan 2-5
exit
sntp unicast client enable
sntp server fr.pool.ntp.org
clock timezone 1 minutes 0
stack
member 1 2
exit
ip address 10.94.0.1 255.255.0.0
ip default-gateway 10.94.0.254
ip address vlan 4
ip routing
interface vlan 2
name "DMZ"

exit
interface vlan 3
name "PUBLIC"
exit
interface vlan 4
name "ADMIN"
exit
interface vlan 5
name "Heartbeat"
exit
username "admin" password 161ebd7d45089b3446ee4e0d86dbcf92 level 15 encrypted
!
interface ethernet 1/g1
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g2
switchport mode general

switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g3
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g4
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g5
switchport mode general

switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g6
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g7
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g8
switchport mode general

switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g9
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g10
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g11
switchport mode general

switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g12
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g13
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g14
switchport mode general

switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g15
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g16
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g17
switchport mode general

switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g18
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g19
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g20
switchport mode general

switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g21
spanning-tree disable
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g22
spanning-tree disable
switchport mode general
switchport general pvid 4
switchport general allowed vlan add 4
switchport general allowed vlan remove 1
exit
!

interface ethernet 1/g23
channel-group 1 mode on
spanning-tree mst 0 external-cost 20000
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!

interface ethernet 1/g24
channel-group 1 mode on
spanning-tree mst 0 external-cost 20000
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g25
channel-group 1 mode on
switchport mode general

switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g26
channel-group 1 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g27
channel-group 1 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!

interface ethernet 1/g28
channel-group 1 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g29
channel-group 2 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g30
channel-group 2 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2

switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g31
channel-group 2 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g32
channel-group 2 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g33
spanning-tree disable

spanning-tree mst 0 external-cost 20000
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g34
spanning-tree disable
spanning-tree mst 0 external-cost 20000
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g35
channel-group 2 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2

switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g36
channel-group 2 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g37
channel-group 3 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g38
channel-group 3 mode on

switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g39
channel-group 3 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g40
channel-group 3 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit

!
interface ethernet 1/g41
channel-group 3 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g42
channel-group 3 mode on
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g43
spanning-tree disable
spanning-tree mst 0 external-cost 20000
switchport mode general

switchport general pvid 3
switchport general allowed vlan add 3
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g44
spanning-tree disable
spanning-tree mst 0 external-cost 20000
switchport mode general
switchport general pvid 3
switchport general allowed vlan add 3
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g45
switchport mode general
switchport general pvid 3
switchport general allowed vlan add 3
switchport general allowed vlan remove 1
exit
!

interface ethernet 1/g46
switchport mode general
switchport general pvid 3
switchport general allowed vlan add 3
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g47
switchport mode general
switchport general pvid 3
switchport general allowed vlan add 3
switchport general allowed vlan remove 1
exit
!
interface ethernet 1/g48
switchport mode general
switchport general pvid 3
switchport general allowed vlan add 3
switchport general allowed vlan remove 1
exit
!

interface port-channel 1
description 'LAG1-ESX1'
hashing-mode 6
switchport access vlan 2
exit
!
interface port-channel 2
description 'LAG2-ESX2'
hashing-mode 6
switchport access vlan 2
exit
!
interface port-channel 3
description 'LAG3-ESX3'
hashing-mode 6
switchport access vlan 2
exit
exit

 

Channel   Ports                         Hash Algorithm Type
-------   ----------------------------- -------------------
ch1       Active: 1/g23, 1/g24,         6
          1/g25, 1/g26, 1/g27, 1/g28
ch2       Active: 1/g29, 1/g30,         6
          1/g31, 1/g32, 1/g35, 1/g36
ch3       Active: 1/g37, 1/g38,         6
          1/g39, 1/g40, 1/g41, 1/g42

VLAN       Name                         Ports          Type      Authorization
-----  ---------------                  -------------  -----     -------------
1      Default                          ch4-48,        Default   Required
                                        1/xg1-1/xg4
2      DMZ                              ch1-3,         Static    Required
                                        1/g33-1/g34
3      PUBLIC                           1/g43-1/g48    Static    Required
4      ADMIN                            1/g1-1/g22     Static    Required
5      Heartbeat                                       Static    Required

After that, I would like to trunk my two switch and have the same segmention on my two switch with my VLAN.

I would like to know If I must create one trunk by VLAN, or one trunk where all VLAN can passed.

Someone have an example of configuration? adviced? Because I have little knowledge in VLAN architecture.

Thank's for your help!

 

Regard's!