I'm trying to figure out what the best route for all this would be for us.
I wanted to configure one Virtual Machine that would be an edge server, mainly for Skype for Business, so it could be setup to work on the mobile platform.
We have a dedicated ip address configured on a 2ndary port on our gateway (sonicewall)..
This is what I thought i needed to do:
Take that port and send it to our switch..
Take 2 of the many ports i have on our hyper-v host server and team them.. create a virtual switch (of which type, external, private, etc.. assumed external.. actually all of our existing switches are set to external in hyper-v)..
From the 2 ports on the physical host server, put them into designated ports on the main switch..
So now i have port 39: Router cable.. port 41 (team member A), port 43 (team member b)..
I figured now I setup VLAN on the DGS-1248T (older switch).. vlan 01 is the default, everything set to "untagged" except ports 39, 41, 43 are set to "Not member", then create VLAN ID 02 and set all ports except the 3 ports to "not
member" and set the 39,41,43 to "tag".
*Might not work here either, as this switch is layer 2 (i think) and doesnt support routing, so i dont think having the router going into #39 does any good, not sure what the solution is if this is the case.
At any rate.. i'm wondering if any of this is the correct thing to do.
Then there is the question of being able to "talk" to the domain member servers (non dmz).. does this imply setting up a proxy server in the dmz (which software?)..
And also how to remote to the dmz servers to "work on them" since they are isolated (direct connect via hyper-v consoles only?)..
Thanks in advance for any suggestions here
Tech, the Universe, Everything: http://tech-stew.com Just Plane Crazy http://flight-stew.com