How to subnet hosted VMs
Posted
by bwizzy
on Server Fault
See other posts from Server Fault
or by bwizzy
Published on 2010-05-11T13:33:18Z
Indexed on
2010/05/11
13:34 UTC
Read the original article
Hit count: 360
I have a network of VMs each having a LAN IP address and a public IP address. They each have a 1:1 NAT map for public access via the public IP for HTTP, SSH etc. I'm trying to figure out a way to restrict the LAN IPs from talking to each other, but there are some cases where a group of LAN IPs will need to communicate.
I'm using pfSense as a firewall / router on a 192.168.0.0/24 configuration. It seems like I could assign each VM it's own subnet and add a static route to the firewall for that VM to get back to the firewall for internet access / other fw rules. Is that right?
I assigned 1 VM with: address 192.168.1.2 netmask 255.255.255.254 gateway 192.168.1.1
Then added a static route on the FW's LAN interface using 192.168.1.0/30 as the destination network and 192.168.1.1 as the gateway.
Nothing appears to be working, anyone have any ideas? Please be aware I'm not that familiar with subnets.
Thanks!
© Server Fault or respective owner