[OpenIndiana-discuss] Creating a network with zones

Joris FAGBEMIRO fagbjoris at gmail.com
Thu Nov 13 23:06:10 UTC 2014


Hi Jon.
I'm planning to work (deployment of a datacenter) on a server which have 3
physical NIC.
Within this server,there will be a lot of servers (zones) distributed among
four networks. Each network have his set of servers and a firewall which is
the gate.
Now to enable communications between these networks, i have to create a
zone which will be the router. This router must be connected to each
firewall.
So i want to know that, if it is possible to connect a VNIC of each
firewall to a VNIC of tge router?or should i create an etherstub?
Hop that it's more comprehensible!!
Le 13 nov. 2014 23:12, "Jonathan Adams" <t12nslookup at gmail.com> a écrit :

> I don't quite get what you're trying to do ...
>
> do you want a computer that connects 4 networks to an external router box,
> but you don't want any of the networks to talk to each other?
>
> Is this a physical thing you're trying to do, or is this just testing a
> system?
>
> The first you can do by joining 5 networks together in one box and then
> just ipf'ing the interfaces so that they can't talk to each other ... that
> is if I read you correctly.
>
> If the networks that you are separating use the same physical wires as each
> other then you have different issues over your security ...
>
> Jon
>
> On 13 November 2014 17:35, Joris FAGBEMIRO <fagbjoris at gmail.com> wrote:
>
> > Hi.
> > I want to create a bit complex network which will have one router zone
> > connected to four different networks.Each of these networks will have a
> > firewall which will be between the router zone and the other zones of
> these
> > networks.
> > So i have to connect the firewalls to the router and here is my
> > question:can i connect directly the firewalls to the router (so i should
> > create four VNIC on the router zone) or should i use an etherstub
> (virtual
> > switch)?More generally,my question is that:can two VNICs of different
> zones
> > be connected directly?or it's necessary to use a virtual switch?
> > Thanks!!!
> > _______________________________________________
> > openindiana-discuss mailing list
> > openindiana-discuss at openindiana.org
> > http://openindiana.org/mailman/listinfo/openindiana-discuss
> >
> _______________________________________________
> openindiana-discuss mailing list
> openindiana-discuss at openindiana.org
> http://openindiana.org/mailman/listinfo/openindiana-discuss
>


More information about the openindiana-discuss mailing list