Quantcast
Channel: Virtual Machine Manager – General forum
Viewing all articles
Browse latest Browse all 728

NVGRE Gateway VM - Route between isolated and non-isolated networks

$
0
0

Good Evening All,

I'm trying to configure a new development environment using Hyper-V/VMM/Azure Pack on Server 2012 R2 and SCVMM 2012 R2 (UR11) and am having a lot of difficulty with the Windows Server Gateway (NVGRE) function. The host network configuration is two physical LANs 10.0.0.0/23 (External) and 192.168.4.0/22 (Private). I have two hosts in a "Management" group that contain the DEV.LOCAL DCs, SQL, SCVMM, etc. all on the 192.168.4.0/22 network. I've carved out a subnet of that network to serve as the Provider Address space and it is seen by all 5 hosts. All management of the "untrusted" hosts in a separate domain is conducted through the 10.0.0.0/23 subnet through a RRAS router in the 192.168.4.0/22 space.

Two hosts are in a "Tenant" group that can see the PA network and has two clients in an isolated VM network (192.168.12.0/22). The final host is my "Gateway" running a stand-alone gateway VM per the configuration in this white paper https://gallery.technet.microsoft.com/Hybrid-Cloud-with-NVGRE-aa6e1e9a. I've also verified that the provider addresses on the hosts and customer lookup records all appear correct.

I've been able to verify that the Tenant VMs in 192.168.12.0/24 can talk to one another and can ping their VM Network gateway at 192.168.12.1. I additionally created a separate VM with two NICs on the Tenant (12.0/22) and Management (4.0/22) subnets and can contact both networks independently but not through the router.

The Gateway VM has a 3 NICs, one in the 10.0.0.0/23 (this one has a default gateway), 192.168.4.0/22 (no default gateway), and one connected to the logical switch but not mapped to a VM Network.

My two questions are, is it even possible to route between the provider address/management space and an isolated VM network (all running on the same logical switch)? Are there any suggestions for configuring the gateway to allow this traffic, or troubleshooting information? Could it be as simple as the Network Service connection string missing a parameter?

Thanks in advance,
David


Viewing all articles
Browse latest Browse all 728

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>