Remote Access vCloud Director VM Console

Not sure if VMware did not do the documentation properly OR I did not read it properly. It took me over 2-day to figure out how to setup vCloud Director to provide VM console access of VM to authorized user on Internet. The highlevel diagram is attached below. This might not be the best setup but works and makes sense to me.
Image
The configuration on Firewall (I use ASA):
  1. Configure Static NAT for 172.16.8.10 to 1.2.3.4. So user on Internet can access 1.2.3.4 to login to vCloud Director portal
  2. Configure identity NAT between External and LAN interfaces: for any traffic, which arrives on External interface of firewall, destines for 1.2.3.5, firewall will translate the source address to 1.1.1.1 and destination address to 172.16.9.10
The configuration on vCloud Director (I use centOS with 2 NICs and default gateway 172.16.8.1):
  1. Set the external proxy IP to 1.2.3.5 in the vCloud Director management portal
  2. Add static route in centOS: Send traffic to 172.16.9.2 if the destination address is 1.1.1.1
Advertisements

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s