Fortinet black logo

Step 3: Create VLAN

6.1.0
Copy Link
Copy Doc ID 790de906-578c-11eb-b9ad-00505692583a:670122
Download PDF

Step 3: Create VLAN

Create vswitch (optional)

ESXi has a default vswitch named vswitch0. You can create your VLAN with the default switch or you can create your own vswitch.

If you would like to create your own vswitch, following the steps below:

  1. Click ESXi and select the Configure tab. From the left menu, navigate to Networking > Virtual switches and click Add Networking...
  2. Select connection type: Select the option for "Virtual Machine Port Group for a Standard Switch".
  3. Select target device: Select the option for "New standard switch" with 1500 MTU (Bytes).
  4. Create a standard switch: If your client and server is not located on the same ESXi as your FortiDDoS VM, click the green plus button to bind your adapter to this vswitch. Otherwise, just click Next (which is the option we used for this demonstration). You may see a Physical Network Adapters Warning - just click OK to continue.
  5. Connection settings: Create the first vlan that belongs to this vswitch.
  6. Ready to complete: Review your settings and click Finish.
  7. You should now see the new vswitch and its VLAN.

Create VLAN

You can add VLAN to the default vswitch vswitch0 or to the vswitch you created. In the following steps we will demonstrate with vswitch2.

  1. Click ESXi and select the Configure. From the left menu, navigate to Networking > Virtual switches. Select the vswitch (in our case, vswitch2) from the table of switches and click Add Networking....
  2. Select connection type: Select the option for "Virtual Machine Port Group for a Standard Switch".
  3. Select target device: Select the option for "New standard switch" with 1500 MTU (Bytes).
  4. Connection settings: enter the Network label and VLAN ID.
  5. Ready to complete: Review your settings and click Finish to complete the process.
  6. You should now see the new VLAN you've created under the Port Groups section.

Enable VLAN Promiscuous mode

Enabling VLAN promiscuous mode is one of the mandatory settings for VM, so all VLANs you plan to use must be set to promiscuous mode.

Click Esxi -> Configure -> Virtual Switch -> click Switch name -> click VLAN id -> Edit

  1. Click ESXi and select the Configure tab. From the left menu, navigate to Networking > Virtual switches. Select the Switch name (e.g. "vSwitch2") from the table of switches. Then, select the VLAN row (e.g. Port Group 1051, VLAN ID 1051) from the Port Groups table and click Edit....
  2. In the Edit Settings table, select Security from the left menu. Check the Override box next to Promiscuous mode and choose Accept from the dropdown menu and click Finish.

Step 3: Create VLAN

Create vswitch (optional)

ESXi has a default vswitch named vswitch0. You can create your VLAN with the default switch or you can create your own vswitch.

If you would like to create your own vswitch, following the steps below:

  1. Click ESXi and select the Configure tab. From the left menu, navigate to Networking > Virtual switches and click Add Networking...
  2. Select connection type: Select the option for "Virtual Machine Port Group for a Standard Switch".
  3. Select target device: Select the option for "New standard switch" with 1500 MTU (Bytes).
  4. Create a standard switch: If your client and server is not located on the same ESXi as your FortiDDoS VM, click the green plus button to bind your adapter to this vswitch. Otherwise, just click Next (which is the option we used for this demonstration). You may see a Physical Network Adapters Warning - just click OK to continue.
  5. Connection settings: Create the first vlan that belongs to this vswitch.
  6. Ready to complete: Review your settings and click Finish.
  7. You should now see the new vswitch and its VLAN.

Create VLAN

You can add VLAN to the default vswitch vswitch0 or to the vswitch you created. In the following steps we will demonstrate with vswitch2.

  1. Click ESXi and select the Configure. From the left menu, navigate to Networking > Virtual switches. Select the vswitch (in our case, vswitch2) from the table of switches and click Add Networking....
  2. Select connection type: Select the option for "Virtual Machine Port Group for a Standard Switch".
  3. Select target device: Select the option for "New standard switch" with 1500 MTU (Bytes).
  4. Connection settings: enter the Network label and VLAN ID.
  5. Ready to complete: Review your settings and click Finish to complete the process.
  6. You should now see the new VLAN you've created under the Port Groups section.

Enable VLAN Promiscuous mode

Enabling VLAN promiscuous mode is one of the mandatory settings for VM, so all VLANs you plan to use must be set to promiscuous mode.

Click Esxi -> Configure -> Virtual Switch -> click Switch name -> click VLAN id -> Edit

  1. Click ESXi and select the Configure tab. From the left menu, navigate to Networking > Virtual switches. Select the Switch name (e.g. "vSwitch2") from the table of switches. Then, select the VLAN row (e.g. Port Group 1051, VLAN ID 1051) from the Port Groups table and click Edit....
  2. In the Edit Settings table, select Security from the left menu. Check the Override box next to Promiscuous mode and choose Accept from the dropdown menu and click Finish.