Professional Documents
Culture Documents
Module 4
By the end of this lesson, you should be able to meet the following
objectives:
List benefits of using vSphere distributed switches
Create a distributed switch
Manage the distributed switch
Describe the distributed switch architecture
Describe properties of a distributed switch
Example:
Create a distributed switch named vDS01. Create a port group named
Production, which is used for virtual machine networking. Assign
uplinks vmnic1 on host ESXi01 and vmnic1 on host ESXi02 to the
distributed switch.
Managing
virtual
adapters is
performed at
the host level.
Modify a physical
adapter configuration
at the host level.
Change teaming and
failover policies at the
switch level.
management port
management
port vSphere vMotion
port
distributed ports
and port groups
distributed switch vCenter
(control plane) Server
uplink
port groups
hidden virtual
switches
(I/O plane) virtual
host 1 host 2
The Properties page also has the following settings for Advanced
properties:
Maximum transmission unit (MTU)
Discovery protocol
Administrator contact information
Most of the port group properties are available for both distributed
port groups and standard port groups.
A distributed port group has an additional load balancing policy option:
Route based on physical NIC load.
By the end of this lesson, you should be able to meet the following
objectives:
Describe distributed switch port binding
Explain how private VLANs work
Describe types of discovery protocols
Describe how vSphere Network I/O Control and QoS tagging enhance
performance
Describe how Link Aggregation Control Protocol (LACP) enhances
availability and performance
Explain health check
Configure NetFlow on a distributed switch
Configure port mirroring on a distributed switch
Back up and restore a distributed switch configuration
Explain the automatic rollback and recovery of networking
configurations
VMware vSphere: Optimize and Scale 4-24
distributed switch
5 5 15 17
5
PrivateVLAN
VLAN PrivateVLAN
Private VLAN
PrivateVLAN
VLAN55 Private
VLAN55 Private 155 1717
VLAN 155
(promiscuous)
(promiscuous) (isolated) (community)
(isolated) (community)
Promiscuous
Isolated
Distributed
ARP reply Switch
tag: none ARP reply ARP reply ARP reply
tag: 155 tag: 155 tag: none
Configure Select the distributed switch and select Private VLN > Edit.
CDP LLDP
With CDP or LLDP enabled, the virtual switch can be configured for
three different modes of operation:
Listen: Information is received from the physical switches.
Advertise: Information is sent to the physical switches.
Both: Information is sent to and received from the physical switches.
Right-click a
distributed
switch and
select
Edit Settings.
Distributed switch
distributed
switch
Create user-
defined network
resource pools
to give critical
virtual machines
more network
bandwidth than
lower priority
virtual
machines.
The QoS priority tag specifies an IEEE 802.1p tag, enabling you to
prioritize network resource pools.
This rule, called System Traffic Rule 1, allows incoming and outgoing
virtual machine traffic.
This rule, called Network Traffic Rule 1, allows incoming traffic from
systems on VLAN 32 that are in the MAC address range,
00:50:56:00:00:00.
This rule, called Network Traffic Rule 2, drops all outgoing ICMP
packets for any IP address (source and destination).
You can assign priority tags to traffic that has higher networking
requirements for bandwidth, low latency, and so on.
You can mark the traffic with a CoS tag in layer 2 or a DSCP tag in
layer 3.
This rule, called Tagging Traffic Rule 1, marks incoming SIP UDP
packets from subnet 192.168.2.0/24.
You configure the same number of ports for a LAG as the number of
ports on the LACP port channels on the physical switch.
production test
distributed
uplink port group switch
LAG01
Uplink0 Uplink1
LAG01-1 LAG01-1
host
Port group Port group
configuration: configuration:
Active Link: Active Link:
LAG1 LAG2
ESXi
Switch 1 Switch 2
configuration: configuration:
physical switches
ESXi ESXi
NetFlow:
A network analysis tool for monitoring the network and for gaining
visibility into virtual machine traffic
A tool that can be used for profiling, intrusion detection, networking
forensics, and compliance
Supported on distributed switches only
ESXi
hosts
distributed NetFlow
switch collector
distributed switch
enabled
for
NetFlow network flow data
ESXi
hosts
physical NetFlow
host
collector
distributed switch
network flow records
To configure NetFlow on a
distributed switch and enable
or disable NetFlow on a
distributed port group, a
specific port, or at the uplink :
1. In the Networking inventory
view, right-click the
distributed switch and select
All vCenter Actions > Edit
Netflow.
Automatic Rollback:
Enabled by default
To disable, set
config.vpxd.network.rollback
to false in advanced settings.
DCUI Recovery:
If automatic rollback is
disabled, recovery can be
performed on the DCUI.
DCUI recovery must be
performed on a per host basis.