cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
614
Views
0
Helpful
2
Replies

VSG and Virtual Network firewalling

dani_bosch
Level 1
Level 1

Hello,

Just a basic doubt: as per Virtual network firewalling (like VSG or vShield), I assume that we only need a virtual firewall when very different VM's or tennants share the same L2 domain, right?...otherwise (when these different security domains have different L2 domains), one already has physical firewalling in place on the physical L3 layer.

Am I wrong?

Thanks,

1 Accepted Solution

Accepted Solutions

Robert Burns
Cisco Employee
Cisco Employee

Correct.  The VSG & vShield are position to mainly protect L2 communication or Intra-ESX VM communication where the networking traffic may never leave the host/hypervisor.

Regards,

Robert

View solution in original post

2 Replies 2

dani_bosch
Level 1
Level 1

Any inputs, please?

Robert Burns
Cisco Employee
Cisco Employee

Correct.  The VSG & vShield are position to mainly protect L2 communication or Intra-ESX VM communication where the networking traffic may never leave the host/hypervisor.

Regards,

Robert

Review Cisco Networking for a $25 gift card