User`s guide
PLANNING FOR HYPER-V
November09 Page10
Power
Connect the MD3000i power supplies to separate power sources. This connection
ensures that if one component fails due to a power issue, the alternative path
continues to work.
Security
To secure data across an IP SAN, implement a physically independent network for
the iSCSI data traffic, and isolate it from other Ethernet traffic. Having an isolated
network dedicated to storage traffic means that the storage array avoids network
congestion with other non-storage traffic using the network.
- CHAP
To have secure access between your host and storage array, enable target and
mutual CHAP authentication on the hosts and storage arrays. Follow standard
CHAP password guidelines for best security. Set a strong password that meets
standard ID guidelines on all of the devices in your IP SAN.
VirtualLAN(VLAN)
If you want to physically isolate your IP SAN data traffic from general network traffic,
use VLANs. Turn on VLAN tagging on the Dell PowerVault MD3000i storage array. A
port can either transmit all tagged IP packets or all non-tagged IP packets.
Note: You must enable a VLAN throughout the entire iSCSI SAN from the network
interface cards (NICs) and switches to iSCSI ports; otherwise, behavior might be
inconsistent. To simplify and avoid troubleshooting at deployment, make sure
that the NICs, switches, and storage array are fully operational before you enable
the VLAN feature for the entire solution.
IP SAN Network Infrastructure for Performance
This section describes some general implementation guidelines for performance. These
guidelines are general and might not apply to all applications. Review your application
requirements prior to implementing these guidelines.
GeneralNetworkPractices
Make sure the category rating for the cables used are gigabit-Ethernet-compliant
(CAT5e or CAT6). Design your network to have the least amount of hops between
the storage arrays and the servers. This design greatly reduces the failure points,
and it simplifies the manageability and reduces the latency and complexity of your
network architecture (particularly in the area of redundancy).
Use managed switches because they provide advance features to help you optimize
and maintain your network for your application. Use auto-negotiation only because