Shop
Support
Community
TechCenter
Home
Topics: All
Wikis
Forums
Blogs
Video
TechChat
Events
About
TechCenter
Dell Community
Search Options
Search Everything
Search TechCenter Extras
TechCenter
>
TechCenter Extras
>
General Discussion
>
VM Security Concerns
Join
Sign in
VM Security Concerns
TechCenter Extras
Home
Blog
Forums
Files
Wiki
Forum Thread Details
2
Replies
0
Subscribers
Posted
over 3 years ago
Forums Links
Subscribe via RSS
VM Security Concerns
rated by 0 users
This post has
2 Replies |
0
Followers
Posted by
Regnav
on
10 Jun 2009 12:18 PM
rated by 0 users
VM Security Concerns
What potential security risks arise from having publically accessed vm servers and private vm servers residng in the same HA cluster? Is there a best practice white paper for this topic?
Thanks!
vmware
,
High_Performance_Computing_DTC
,
Security
,
vSwitch
Posted by
erson
on
11 Jun 2009 2:07 AM
rated by 0 users
RE: VM Security Concerns
As long as you seperate the two networks completely there should be no way for an intruder to gain access to your internal network through your publically accessed servers (unless hacking the firewall protecting your internal network of course). Remember that you need network seperation on both your virtual and physical network components (dedicated vSwitches and pNics in vmware-speak). I found two white papers from VMware that hopefully will be helpful:
Network Segmentation in Virtualized Environments (best practice)
http://www.vmware.com/files/pdf/network_segmentation.pdf
DMZ Virtualization with VMware Infrastructure
http://www.vmware.com/files/pdf/dmz_virtualization_vmware_infra_wp.pdf
Posted by
VeeamMark
on
15 Jun 2009 2:59 PM
rated by 0 users
RE: VM Security Concerns
As Andreas mentioned previously, you need to make sure that your vSwitches and pNICs remain separate on all nodes within your HA cluster. In order to maintain this configuration long term, I keep our cluster monitored using Veeam Configurator, which can alert me to any changes in vSwitch configuration.
Veeam Configurator:
http://www.veeam.com/vmware-esx-configure.html
Page 1 of 1 (3 items)