{"id":2582,"date":"2016-08-09T07:38:21","date_gmt":"2016-08-08T19:38:21","guid":{"rendered":"http:\/\/www.zoyinc.com\/?p=2582"},"modified":"2016-08-09T07:38:21","modified_gmt":"2016-08-08T19:38:21","slug":"esx-vlan-to-sonicwall-dmz","status":"publish","type":"post","link":"http:\/\/www.zoyinc.com\/?p=2582","title":{"rendered":"ESX VLAN to SonicWALL DMZ"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-2593 size-full\" src=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL07.jpg\" width=\"600\" height=\"102\" srcset=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL07.jpg 600w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL07-150x26.jpg 150w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL07-300x51.jpg 300w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL07-500x85.jpg 500w\" sizes=\"auto, (max-width: 600px) 100vw, 600px\" \/><\/p>\n<p>I have an ESX server on my LAN and I want to connect it to the DMZ on my SonicWALL using a VLAN as the ESX server only has one network adaptor.<\/p>\n<p>The SonicWALL is a TZ 205w which is connected to Fibre. This in itself was a challenge and is described in the post <a  href=\"http:\/\/www.zoyinc.com\/?p=2541\">Connect SonicWALL TZ205w to Fibre ONT.<\/a><\/p>\n<h2>Prerequisites<\/h2>\n<p>The main prerequisite is that the SonicWALL must be running firmware 5.9 or greater, if a generation 5 applicance such as the TZ 205w or I believe 6.0 or greater for a generation 6 appliance.<\/p>\n<p>Worth noting that I am running ESX v6, though I don&#8217;t think that matters as I am sure VLANs have been supported for quite a while in VMware.<\/p>\n<h2>Enabling a VLAN on ESX virtual machine<\/h2>\n<p>Open up the vSphere Client and select the root. From there select the configuration tab and click on the &#8220;Properties&#8221; link for your vSwitch:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-2584 size-full\" src=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL01.jpg\" alt=\"vSphere Client\" width=\"598\" height=\"269\" srcset=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL01.jpg 598w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL01-150x67.jpg 150w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL01-300x135.jpg 300w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL01-500x225.jpg 500w\" sizes=\"auto, (max-width: 598px) 100vw, 598px\" \/><\/p>\n<p>In the vSwitch properties, Select the &#8220;VM Network&#8221; port and click on the &#8220;Edit&#8221; button to set the VLAN ID to match your VLAN number, in my case &#8220;5&#8221; and potentially change the &#8220;Network Label&#8221; to something more meaning full like say &#8220;VLAN 5&#8221;:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-2585 size-full\" src=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL02.jpg\" alt=\"vSwitch Properties\" width=\"500\" height=\"224\" srcset=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL02.jpg 500w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL02-150x67.jpg 150w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL02-300x134.jpg 300w\" sizes=\"auto, (max-width: 500px) 100vw, 500px\" \/><\/p>\n<p>To give:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-2587 size-full\" src=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL03.jpg\" alt=\"VLAN setting\" width=\"400\" height=\"122\" srcset=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL03.jpg 400w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL03-150x46.jpg 150w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL03-300x92.jpg 300w\" sizes=\"auto, (max-width: 400px) 100vw, 400px\" \/><\/p>\n<p>Obviously you need to go back to your VM and set the network label to match:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-2588 size-full\" src=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL04.jpg\" alt=\"VM settings\" width=\"500\" height=\"215\" srcset=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL04.jpg 500w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL04-150x65.jpg 150w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL04-300x129.jpg 300w\" sizes=\"auto, (max-width: 500px) 100vw, 500px\" \/><\/p>\n<h2>Enabling a VLAN setting on a SonicWALL DMZ<\/h2>\n<p>On the SonicWALL side of the equation we need to now create a &#8220;Virtual Interface&#8221;.<\/p>\n<p>So login to the SonicWALL and select &#8220;Network | Interfaces&#8221;<img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-2563 size-full\" src=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/SonicWALLFibre09.jpg\" alt=\"Virtual Interface\" width=\"450\" height=\"257\" srcset=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/SonicWALLFibre09.jpg 450w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/SonicWALLFibre09-150x86.jpg 150w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/SonicWALLFibre09-300x171.jpg 300w\" sizes=\"auto, (max-width: 450px) 100vw, 450px\" \/>Then set the following:<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-2591 size-full\" src=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL06.jpg\" alt=\"VLAN settings\" width=\"450\" height=\"319\" srcset=\"http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL06.jpg 450w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL06-150x106.jpg 150w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL06-300x213.jpg 300w, http:\/\/www.zoyinc.com\/wp-content\/uploads\/2016\/08\/ESXVLAN2SonicWALL06-423x300.jpg 423w\" sizes=\"auto, (max-width: 450px) 100vw, 450px\" \/>Note that the &#8220;Advanced&#8221; settings are all default. Obviously the &#8220;VLAN Tag&#8221; needs to match the &#8220;VLAN ID&#8221; used in ESX.<\/p>\n<p>The &#8220;IP Address&#8221; is the address of the interface and is the &#8220;gateway&#8221; for the VLAN.<\/p>\n<h3>VM network settings<\/h3>\n<p>In the above example the &#8220;IP Address&#8221; of the interface is &#8220;192.168.204.1&#8221; and subnet &#8220;255.255.255.0&#8221; or &#8220;\/24&#8221;. This means that for the virtual machine on this VLAN in order for it to connect outside the VLAN it should have an IP in the range 192.168.204.x with a &#8220;default gateway&#8221; of &#8220;192.168.204.1&#8221;. Remember you can change any of this to suit your requirements !<\/p>\n<h2>Resources<\/h2>\n<p>Sample configuration of virtual switch VLAN tagging (VST Mode)<\/p>\n<p><a  href=\"https:\/\/kb.vmware.com\/selfservice\/microsites\/search.do?language=en_US&#038;cmd=displayKC&#038;externalId=1004074\">https:\/\/kb.vmware.com\/selfservice\/microsites\/search.do?language=en_US&amp;cmd=displayKC&amp;externalId=1004074<\/a><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>I have an ESX server on my LAN and I want to connect it to the DMZ on my SonicWALL using a VLAN as the ESX server only has one network adaptor. The SonicWALL is a TZ 205w which is connected to Fibre. This in itself was a challenge and is described in the post [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":2594,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[124,345],"tags":[343,354,346,353,308],"class_list":["post-2582","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-esxi","category-sonicwall","tag-esx","tag-network","tag-sonicwall","tag-vlan","tag-vmware"],"_links":{"self":[{"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=\/wp\/v2\/posts\/2582","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2582"}],"version-history":[{"count":5,"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=\/wp\/v2\/posts\/2582\/revisions"}],"predecessor-version":[{"id":2595,"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=\/wp\/v2\/posts\/2582\/revisions\/2595"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=\/wp\/v2\/media\/2594"}],"wp:attachment":[{"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2582"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2582"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.zoyinc.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2582"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}