Fabric OS Encryption Administrator's Guide

188 Fabric OS Encryption Administrator’s Guide
53-1002159-03
VMware ESX server deployments
4
Figure 107 shows a VMware ESX server with two guest operating systems where two guests access
a fabric over a shared port. To enable this, both guests are assigned a virtual port.
There are two paths to a target storage device:
Virtual host port 1, through the shared host port, to target port 1, redirected through CTC T1.
Virtual host port 2, through the shared host port, to target port 2, redirected through CTC T2.
In this case, the virtual host port 1 is zoned with target port 1, and the virtual host port 2 is zoned
with target port 2 to enable the redirection zoning needed to redirect traffic to the correct CTC.
FIGURE 107 VMware ESX server, One HBA shared by two guest OS
Key Management
Appliance or
Key Vault
Management
Network LAN
Fabric 1
Target
DCFM
Host Port1 (I1)
Management Link
Management Link
Target Port2 (T2)Target Port1 (T1)
Io Sync Link IO Sync Link
CTC1 - CTC for Target Port T1 hosted on BES1 in DEK Cluster
CTC2 - CTC for Target Port T2 hosted on BES2 in DEK Cluster
BES1 BES4
CTC1
(T1)
CTC2
(T2)
D
E
K
C
l
u
s
t
e
r
E
n
c
r
y
p
t
i
o
n
G
r
o
u
p
Dedicated Cluster
Network LAN
Guest
OS1
Guest
OS2
V-Por t1
VMware ESX Server
FC HBA
V-Por t2