SlideShare a Scribd company logo
Public Subnet: 209.229.131.0/24
              Example Host Network Layout                       Management Subnet: 192.168.1.0/24
                       (Physical)                               Storage Subnet: 172.16.0.0/24
                                                                Default Guest Subnet: 10.0.1.0/24


                                                  Network Terminology
Public Subnet – Network directly on either the public internet or with public access. If CloudStack is in a completely
private environment (e.g. inside a corporate network) this is the outward facing address assigned to the virtual
router that all traffic is NAT’d through

Management Subnet – Somewhat self explanatory but this is the network that the management server lives on, as
well as your VM hosts and anything else for CloudStack to management.

Storage – As it relates to CloudStack, this is an optional network dedicated to secondary storage. If not specified, the
management network will be assumed for this role.

Guest Subnet – Unless a custom network is created, this subnet is used for the network and VLAN created for the
guest VMs within a domain, project, and/or account.

Link Local – A special type of virtual interface that exists only between the host and VM. This interface is created on
all system VMs as a way to interact with it securely. *NOTE: VMware does not support link-local interfaces so this
interface will not exist if you are running VMware.

                    Color Key                                                           Network Terminology
                                                     NOTICE: This documentation is for example/education purposes
                Public
                                                     only. Your environment may differ either completely or in small
         Management
                                                     ways from the examples provided here.
              Storage
                Guest
            Link-local


*Note – Where a CIDR is specified it is because those virtual interfaces are created and managed by CloudStack so IP
address assignment is done at a guest (VM) level and therefore no configuration is required on the hypervisor
directly. It is noted for reference. Where an IP address is specified, that interface would be configured on the
hypervisor/host directly to provide that host with direct access to that network.


                                              Basic Networking
                                           Host with 2 Physical NICs

       nic0                                                                            VLAN        100
                                                                        management




                                                                                       IP ADDR     192.168.1.20
                                                                                       GATEWAY     192.168.1.1
                                                                                       VLAN        1

                                                                                       NETWORK     storage
                                                                        storage




                                                                                       IP ADDR     172.16.0.20
                                                                                       GATEWAY
                                                                                       NETWORK     management

                                                                                       NETWORK     public
                                                                        public/guest




       nic1                                                                            IP/CIDR*    209.229.131.0/24
                                                                                       GATEWAY     209.229.131.1
                                                                                       VLAN        500

*Basic Networking Note – In basic networking the “guest” and “public” networks are the same as guests are directly
assigned public addresses and guest segregation/security is achieved through the use of security groups. In
advanced networking mode guest segregation is achieved through the use of VLANs.




                                            Advanced Networking
                                           Host with 2 Physical NICs

       nic0                                                                            NETWORK     management
                                                                        management




                                                                                       IP ADDR     192.168.1.20
                                                                                       GATEWAY     192.168.1.1
                                                                                       VLAN        1

                                                                                       NETWORK     storage
                                                                        storage




                                                                                       IP ADDR     172.16.0.20
                                                                                       GATEWAY
                                                                                       VLAN        100

                                                                                       NETWORK     public
                                                                                       IP/CIDR*    209.229.131.0/24
                                                                        public




                                                                                       GATEWAY     209.229.131.1
                                                                                       VLAN        500

                                                                                       NETWORK     guest
                                                                                       IP/CIDR*    10.0.1.0/24
                                                                        guest




       nic1
                                                                                       GATEWAY     10.0.1.1
                                                                                       VLAN        600-799



                                            Advanced Networking
                                           Host with 4 Physical NICs

       nic0                                                                            NETWORK     management
                                                                        management




                                                                                       IP ADDR     192.168.1.20
                                                                                       GATEWAY     192.168.1.1
                                                                                       VLAN        1


       nic1                                                                            NETWORK     public
                                                                                       IP/CIDR*    209.229.131.0/24
                                                                        public




                                                                                       GATEWAY     209.229.131.1
                                                                                       VLAN        500

       nic2
                                                                                       NETWORK     guest
                                                                                       IP/CIDR*    10.0.1.0/24
                                                                        guest




                                                                                       GATEWAY     10.0.1.1
                                                                                       VLAN        600-799
       nic3
                                                                                       NETWORK     storage
                                                                                                   172.16.0.20
                                                                        storage




                                                                                       IP ADDR
                                                                                                   172.16.1.20
                                                                                       GATEWAY
                                                                                       VLAN        100



Note – In this example we are doing MPIO to the storage network. NIC bonding for performance and/or redundancy
would work as well but would include just a single IP address instead of 2. Another alternative would be to connect
nic2 to a dedicated guest network and nic3 to storage.

More Related Content

PDF
Cisco nexus 1000v
PDF
IBM System x Private Cloud Offering, Advanced Configuration: Architecture and...
PPTX
VMware Networking, CISCO Nexus 1000V, and CISCO UCS VM-FEX
PDF
Mikrotik advanced
PDF
PDF
BRKVIR-3013 Deploying and Troubleshooting the Nexus 1000v Virtual Switch on ...
PDF
DrayTek switch_management_intro
PDF
Databook 2016-151224-a3
Cisco nexus 1000v
IBM System x Private Cloud Offering, Advanced Configuration: Architecture and...
VMware Networking, CISCO Nexus 1000V, and CISCO UCS VM-FEX
Mikrotik advanced
BRKVIR-3013 Deploying and Troubleshooting the Nexus 1000v Virtual Switch on ...
DrayTek switch_management_intro
Databook 2016-151224-a3

What's hot (16)

PDF
Aerohive datasheet br200
PDF
Draytek Databook 2015 v2
PDF
Aerohive AP 170
PDF
tplink manual best
PDF
Welcome to International Journal of Engineering Research and Development (IJERD)
PDF
Ies5000 config guide
PDF
Router and Switches Cisco
DOC
Cisco Catalyst 2960-X Datasheet
PDF
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...
PPTX
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...
PPTX
10.) vxlan
PPT
Cisco Small Business Wireless Portfolio
PDF
Summit x460
PDF
Ies5000 usg
PDF
Thomson datenblatt
PDF
Databook 2017 v2
Aerohive datasheet br200
Draytek Databook 2015 v2
Aerohive AP 170
tplink manual best
Welcome to International Journal of Engineering Research and Development (IJERD)
Ies5000 config guide
Router and Switches Cisco
Cisco Catalyst 2960-X Datasheet
Webinar NETGEAR - Switch Prosafe Stackable per l'alta disponibilità (HA) dell...
An Introduction to the Emulex Network Xceleration Solution – FastStack™ Sniff...
10.) vxlan
Cisco Small Business Wireless Portfolio
Summit x460
Ies5000 usg
Thomson datenblatt
Databook 2017 v2
Ad

Similar to Cloudstack Example Host Networking (20)

PDF
Cloudstack System VMs
PPTX
Ipv6 the next generation protocol
PPT
Network and services overview 20121202 clean
PDF
Myhomedomain2improved
PPTX
PDF
Private Ip And Real Ip Based Vpn Solution Features
PDF
QuickTutorial Guide Advanced Topics in IP Addressing
PDF
Ccna4
PDF
Valdir Adorni - Compwire / EMC2 Clariion Implementation Sample
PDF
CCNA Training Details..
PDF
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
PDF
Visual ip subnetting
PPTX
Olive Introduction for TOI
PDF
Mpls concepts. Time to Certify
PPTX
Xen and Apache cloudstack
PDF
Open Source Networking with Vyatta
PPTX
Networking in the cloud: An SDN primer
PPTX
Networking in the Cloud: An SDN Primer
PPTX
Cherian networking in_the_cloud_041613
PPTX
Making case up
Cloudstack System VMs
Ipv6 the next generation protocol
Network and services overview 20121202 clean
Myhomedomain2improved
Private Ip And Real Ip Based Vpn Solution Features
QuickTutorial Guide Advanced Topics in IP Addressing
Ccna4
Valdir Adorni - Compwire / EMC2 Clariion Implementation Sample
CCNA Training Details..
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Visual ip subnetting
Olive Introduction for TOI
Mpls concepts. Time to Certify
Xen and Apache cloudstack
Open Source Networking with Vyatta
Networking in the cloud: An SDN primer
Networking in the Cloud: An SDN Primer
Cherian networking in_the_cloud_041613
Making case up
Ad

Recently uploaded (20)

PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
Machine learning based COVID-19 study performance prediction
PDF
Unlocking AI with Model Context Protocol (MCP)
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PPTX
A Presentation on Artificial Intelligence
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
NewMind AI Weekly Chronicles - August'25 Week I
PDF
CIFDAQ's Market Insight: SEC Turns Pro Crypto
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
NewMind AI Monthly Chronicles - July 2025
PPTX
Big Data Technologies - Introduction.pptx
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Empathic Computing: Creating Shared Understanding
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Building Integrated photovoltaic BIPV_UPV.pdf
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
Per capita expenditure prediction using model stacking based on satellite ima...
Machine learning based COVID-19 study performance prediction
Unlocking AI with Model Context Protocol (MCP)
Digital-Transformation-Roadmap-for-Companies.pptx
A Presentation on Artificial Intelligence
Mobile App Security Testing_ A Comprehensive Guide.pdf
NewMind AI Weekly Chronicles - August'25 Week I
CIFDAQ's Market Insight: SEC Turns Pro Crypto
Dropbox Q2 2025 Financial Results & Investor Presentation
NewMind AI Monthly Chronicles - July 2025
Big Data Technologies - Introduction.pptx
Network Security Unit 5.pdf for BCA BBA.
20250228 LYD VKU AI Blended-Learning.pptx
Reach Out and Touch Someone: Haptics and Empathic Computing
Empathic Computing: Creating Shared Understanding

Cloudstack Example Host Networking

  • 1. Public Subnet: 209.229.131.0/24 Example Host Network Layout Management Subnet: 192.168.1.0/24 (Physical) Storage Subnet: 172.16.0.0/24 Default Guest Subnet: 10.0.1.0/24 Network Terminology Public Subnet – Network directly on either the public internet or with public access. If CloudStack is in a completely private environment (e.g. inside a corporate network) this is the outward facing address assigned to the virtual router that all traffic is NAT’d through Management Subnet – Somewhat self explanatory but this is the network that the management server lives on, as well as your VM hosts and anything else for CloudStack to management. Storage – As it relates to CloudStack, this is an optional network dedicated to secondary storage. If not specified, the management network will be assumed for this role. Guest Subnet – Unless a custom network is created, this subnet is used for the network and VLAN created for the guest VMs within a domain, project, and/or account. Link Local – A special type of virtual interface that exists only between the host and VM. This interface is created on all system VMs as a way to interact with it securely. *NOTE: VMware does not support link-local interfaces so this interface will not exist if you are running VMware. Color Key Network Terminology NOTICE: This documentation is for example/education purposes Public only. Your environment may differ either completely or in small Management ways from the examples provided here. Storage Guest Link-local *Note – Where a CIDR is specified it is because those virtual interfaces are created and managed by CloudStack so IP address assignment is done at a guest (VM) level and therefore no configuration is required on the hypervisor directly. It is noted for reference. Where an IP address is specified, that interface would be configured on the hypervisor/host directly to provide that host with direct access to that network. Basic Networking Host with 2 Physical NICs nic0 VLAN 100 management IP ADDR 192.168.1.20 GATEWAY 192.168.1.1 VLAN 1 NETWORK storage storage IP ADDR 172.16.0.20 GATEWAY NETWORK management NETWORK public public/guest nic1 IP/CIDR* 209.229.131.0/24 GATEWAY 209.229.131.1 VLAN 500 *Basic Networking Note – In basic networking the “guest” and “public” networks are the same as guests are directly assigned public addresses and guest segregation/security is achieved through the use of security groups. In advanced networking mode guest segregation is achieved through the use of VLANs. Advanced Networking Host with 2 Physical NICs nic0 NETWORK management management IP ADDR 192.168.1.20 GATEWAY 192.168.1.1 VLAN 1 NETWORK storage storage IP ADDR 172.16.0.20 GATEWAY VLAN 100 NETWORK public IP/CIDR* 209.229.131.0/24 public GATEWAY 209.229.131.1 VLAN 500 NETWORK guest IP/CIDR* 10.0.1.0/24 guest nic1 GATEWAY 10.0.1.1 VLAN 600-799 Advanced Networking Host with 4 Physical NICs nic0 NETWORK management management IP ADDR 192.168.1.20 GATEWAY 192.168.1.1 VLAN 1 nic1 NETWORK public IP/CIDR* 209.229.131.0/24 public GATEWAY 209.229.131.1 VLAN 500 nic2 NETWORK guest IP/CIDR* 10.0.1.0/24 guest GATEWAY 10.0.1.1 VLAN 600-799 nic3 NETWORK storage 172.16.0.20 storage IP ADDR 172.16.1.20 GATEWAY VLAN 100 Note – In this example we are doing MPIO to the storage network. NIC bonding for performance and/or redundancy would work as well but would include just a single IP address instead of 2. Another alternative would be to connect nic2 to a dedicated guest network and nic3 to storage.