Question Isolation of Blades

osamamansoor

Honorable
Sep 8, 2016
29
0
10,530
Hello Experts,


I need your help regarding below issue.

We have procured IBM Blade Center S with three blades and storage 6 Years back and installed Microsoft Hyper-V with Failover cluster and running different Virtual Machines.

Now we have a requirement to isolate two virtual machines due to compliance requirement with all other rest of the machines which required to isolate HOST (One of the Blade), Storage and VLAN.

IBM Blade Server S-8886 contains a total of three BladeCenter HS23 servers and Virtual Machine 01 and Virtual Machine 02 both run from one single HS23 server. These three HS23 are all connected to a shared storage device (SAN) via RAID 1 and RAID 5; at this time all three Blades Servers have access to all the disks (or LUNs) available in the SAN. Also all servers are on the same network.

For the isolation to be approved we are looking to see that there is a disk (or LUN) in the SAN storage device that can be accessed only by the HS23 server that’s running Virtual Machine 01 and Virtual Machine 02, and not by the other two blades as well. Also the HS23 machine running Virtual Machine 01 and Virtual Machine 02 needs to be on a separate VLAN.

Is creating a dedicated LUN in the SAN for the HS23 with Virtual Machine 01 an issue? This should be an option from the SAN device’s console; . How about a separate VLAN at switch level? Is this option also be available from the devices’ console ?

can we configure it with examples: LUN masking or SAN zoning in the SAN device configuration, and a separate VLAN at switch level
 

Ralston18

Titan
Moderator
Do the following:

Explain more about your operational environment and overall requirements.

Work out what you believe to be the answers to your questions. Do not use simple "yes" and "no" responses.

Post those answers along with how and why you arrived at those answers.

Then request further input, comments, and suggestions.
 

osamamansoor

Honorable
Sep 8, 2016
29
0
10,530
The Requirement is to re-configured this existing with respect to following

Isolate one of the blade from another internal blade
Isolate its storage access so other Blade can not access its dedicated storage
Isolate blade with respect to virtual LAN.