Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - demazter

#1
General Discussion / VMWare VLAN Configuration
January 02, 2025, 01:08:22 PM
Hello,
I have a VMWare cluster and am using VLAN for segregation between different collections of VM's.

Each collection of VM's has a distributed port group and a VLAN is assigned to this port group.
When attaching VM's to this port group I can ping between VM's without any problems.

When I add OpnSense with a LAN interface on this port group the VM's are not able to communicate with it.  There is separate port groups for the WAN interface on OpnSense to provide internet access.

If I remove the VLAN tag from the LAN port group communication between client VM's and OpnSense is restored.

How do I get the VLAN configuration to work to allow me to segregate the LAN VM groups.

Each LAN group has it's own OpnSense.

I have tried adding a VLAN interface to the appropriate NIC but this does not help.

There are no logs in the OpnSense indicating the client devices are even getting to the OpnSense interface.
#2
Virtual private networks / VMWare VPN Configuration
January 02, 2025, 12:34:49 PM
Hello,
I have a VMWare cluster and am using VLAN for segregation between different collections of VM's.

Each collection of VM's has a distributed port group and a VLAN is assigned to this port group.
When attaching VM's to this port group I can ping between VM's without any problems.

When I add OpnSense with a LAN interface on this port group the VM's are not able to communicate with it.  There is separate port groups for the WAN interface on OpnSense to provide internet access.

If I remove the VLAN tag from the LAN port group communication between client VM's and OpnSense is restored.

How do I get the VLAN configuration to work to allow me to segregate the LAN VM groups.

Each LAN group has it's own OpnSense.

I have tried adding a VLAN interface to the appropriate NIC but this does not help.

There are no logs in the OpnSense indicating the client devices are even getting to the OpnSense interface.