On 8/19/14 8:47 , G B wrote:
> 
> 
> Internet--->cable modem--->PF firewall (physical server)
>                                                     |
>                             physical switch|physical switch
>                                                    / \
>                                                   /   \
>                                         internal  dmz
>                                               /          \
>                                       Windows      \
>                                                            /\
>                                                     mail  web(multiple 
> domains each in a Zone)
> What I'd like to do since my mail and web servers are in Zones is get rid of 
> the physical switch for the dmz and make it a virtual switch.  (sorry for the 
> poor ascii art) 

It sounds like all of your DMZ services are on their own separate
physical NIC and you'd like to keep them on their own physical nic;
however, that physical nic should be plugged into the physical switch on
the left instead of the current separate one on the right.

If that's the case, just create a nic tag over the DMZ physical nic and
have all VMs in the DMZ created over that nic tag. That will create an
implicit virtual switch and there's no need for creating your own and
trying to bridge it.

Robert


-------------------------------------------
smartos-discuss
Archives: https://www.listbox.com/member/archive/184463/=now
RSS Feed: https://www.listbox.com/member/archive/rss/184463/25769125-55cfbc00
Modify Your Subscription: 
https://www.listbox.com/member/?member_id=25769125&id_secret=25769125-7688e9fb
Powered by Listbox: http://www.listbox.com

Reply via email to