Fabric OS Encryption Administrator's Guide

Fabric OS Encryption Administrator’s Guide 187
53-1002159-03
VMware ESX server deployments
4
VMware ESX server deployments
VMware ESX servers may host multiple guest operating systems. A guest operating system may
have its own physical HBA port connection, or it may use a virtual port and share a physical HBA
port with other guest operating systems.
Figure 106 shows a VMware ESX server with two guest operating systems where each guest
accesses a fabric over separate host ports.
There are two paths to a target storage device:
Host port 1 to target port 1, redirected through CTC T1.
Host port 2 to target port 2, redirected through CTC T2.
Host port 1 is zoned with target port 1, and host port 2 is zoned with target port 2 to enable the
redirection zoning needed to redirect traffic to the correct CTC.
FIGURE 106 VMware ESX server, One HBA per guest OS
Key Management
Appliance or
Key Vault
Management
Network LAN
Fabric 1
Target
DCFM
Host Port2 (I2)Host Port1 (I1)
Management Link
Management Link
Target Port2 (T2)Target Port1 (T1)
Io Sync Link IO Sync Link
CTC1 - CTC for Target Port T1 hosted on BES1 in DEK Cluster
CTC2 - CTC for Target Port T2 hosted on BES2 in DEK Cluster
BES1 BES4
CTC1
(T1)
CTC2
(T2)
D
E
K
C
l
u
s
t
e
r
E
n
c
r
y
p
t
i
o
n
G
r
o
u
p
Dedicated Cluster
Network LAN
VMware ESX Server
Guest
OS1
Guest
OS2