<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>2vcps and a Truck &#187; security</title>
	<atom:link href="http://www.2vcps.com/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.2vcps.com</link>
	<description></description>
	<lastBuildDate>Mon, 23 Jan 2012 15:33:44 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
<atom:link rel="search"
           href="http://www.2vcps.com/opensearch"
           type="application/opensearchdescription+xml"
           title="Content Search" /><xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Secure to the Hosted VM</title>
		<link>http://www.2vcps.com/2009/02/10/secure-to-the-hosted-vm/</link>
		<comments>http://www.2vcps.com/2009/02/10/secure-to-the-hosted-vm/#comments</comments>
		<pubDate>Tue, 10 Feb 2009 19:56:00 +0000</pubDate>
		<dc:creator>Jon Owings</dc:creator>
				<category><![CDATA[security]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://2vcps.com/2009/02/10/secure-to-the-hosted-vm/</guid>
		<description><![CDATA[While trying to cook up a way to secure client hosted VM&#8217;s I thought of this layout. A Virtual Firewall Appliance that creates an IPsec tunnel back to the client network. Then placing the client virtuals on a dedication vSwitch. &#8230; <a href="http://www.2vcps.com/2009/02/10/secure-to-the-hosted-vm/">Continue reading <span class="meta-nav">&#8594;</span></a>
Related posts:<ol>
<li><a href='http://www.2vcps.com/2009/04/01/esx-commands-esxcfg-firewall/' rel='bookmark' title='ESX Commands &#8211; esxcfg-firewall'>ESX Commands &#8211; esxcfg-firewall</a></li>
<li><a href='http://www.2vcps.com/2009/07/02/vsheild-zones-my-first-look/' rel='bookmark' title='vSheild Zones My First Look'>vSheild Zones My First Look</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><a href="http://1.bp.blogspot.com/_Ynay7ILHK2U/SZHdftFfj8I/AAAAAAAA7N8/CEfX2UMGIqE/s1600-h/IPsec+concept.jpg"><img style="MARGIN: 0px 0px 10px 10px; WIDTH: 320px; FLOAT: right; HEIGHT: 133px; CURSOR: hand" id="BLOGGER_PHOTO_ID_5301261773140103106" border="0" alt="" src="http://1.bp.blogspot.com/_Ynay7ILHK2U/SZHdftFfj8I/AAAAAAAA7N8/CEfX2UMGIqE/s320/IPsec+concept.jpg" /></a>
<div>While trying to cook up a way to secure client hosted VM&#8217;s I thought of this layout. A Virtual Firewall Appliance that creates an IPsec tunnel back to the client network. Then placing the client virtuals on a dedication vSwitch.</div>
<div> </div>
<div>Has anyone tried something like this? I hope that VI4 / vSphere will include a way to make this a reality. I figure a downside of just creating a infrastructure with some kind of m0n0wall appliance is the appliance would need to move from host to host in a DRS/HA cluster. I bet with some scripting and/or affinity rules I might be able to keep them together. It would be good of the new infrastructure would have layer 3 or firewall capability that would exist across the cluster. Then you would not have to worry about vMotioning a virtual firewall around.</div>
<div> </div>
<div>Maybe someone has a better way to do this? Am I over thinking it? I would want this best way of assuring clients their data doesn&#8217;t mix at any point physical or virtual unless it is in the VPN tunnel.</div>
<p>Related posts:<ol>
<li><a href='http://www.2vcps.com/2009/04/01/esx-commands-esxcfg-firewall/' rel='bookmark' title='ESX Commands &#8211; esxcfg-firewall'>ESX Commands &#8211; esxcfg-firewall</a></li>
<li><a href='http://www.2vcps.com/2009/07/02/vsheild-zones-my-first-look/' rel='bookmark' title='vSheild Zones My First Look'>vSheild Zones My First Look</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.2vcps.com/2009/02/10/secure-to-the-hosted-vm/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
		<item>
		<title>Virtualization Security Roundtable</title>
		<link>http://www.2vcps.com/2009/01/28/virtualization-security-roundtable-2/</link>
		<comments>http://www.2vcps.com/2009/01/28/virtualization-security-roundtable-2/#comments</comments>
		<pubDate>Wed, 28 Jan 2009 21:44:00 +0000</pubDate>
		<dc:creator>Jon Owings</dc:creator>
				<category><![CDATA[security]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://2vcps.com/2009/01/28/virtualization-security-roundtable-2/</guid>
		<description><![CDATA[Do not forget (mostly a note to myself) the Virtualization Security Roundtable. Related posts: Virtualization Security Roundtable Education and Virtualization &#8211; Oh, the Possibilities
Related posts:<ol>
<li><a href='http://www.2vcps.com/2009/01/14/virtualization-security-roundtable/' rel='bookmark' title='Virtualization Security Roundtable'>Virtualization Security Roundtable</a></li>
<li><a href='http://www.2vcps.com/2009/01/08/education-and-virtualization-oh-the-possibilities/' rel='bookmark' title='Education and Virtualization &#8211; Oh, the Possibilities'>Education and Virtualization &#8211; Oh, the Possibilities</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Do not forget (mostly a note to myself) the <a href="http://www.talkshoe.com/tc/34217">Virtualization Security Roundtable</a>.</p>
<p>Related posts:<ol>
<li><a href='http://www.2vcps.com/2009/01/14/virtualization-security-roundtable/' rel='bookmark' title='Virtualization Security Roundtable'>Virtualization Security Roundtable</a></li>
<li><a href='http://www.2vcps.com/2009/01/08/education-and-virtualization-oh-the-possibilities/' rel='bookmark' title='Education and Virtualization &#8211; Oh, the Possibilities'>Education and Virtualization &#8211; Oh, the Possibilities</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.2vcps.com/2009/01/28/virtualization-security-roundtable-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Virtualization Security Roundtable</title>
		<link>http://www.2vcps.com/2009/01/14/virtualization-security-roundtable/</link>
		<comments>http://www.2vcps.com/2009/01/14/virtualization-security-roundtable/#comments</comments>
		<pubDate>Wed, 14 Jan 2009 22:19:00 +0000</pubDate>
		<dc:creator>Jon Owings</dc:creator>
				<category><![CDATA[security]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://2vcps.com/2009/01/14/virtualization-security-roundtable/</guid>
		<description><![CDATA[Would like to help spread the word about the Virtualization Security Roundtable it will take place this Thursday January 15 at 230 EST.Security topics are outlined in the linked article. I would have to say this is a topic that &#8230; <a href="http://www.2vcps.com/2009/01/14/virtualization-security-roundtable/">Continue reading <span class="meta-nav">&#8594;</span></a>
Related posts:<ol>
<li><a href='http://www.2vcps.com/2009/01/28/virtualization-security-roundtable-2/' rel='bookmark' title='Virtualization Security Roundtable'>Virtualization Security Roundtable</a></li>
<li><a href='http://www.2vcps.com/2009/01/08/education-and-virtualization-oh-the-possibilities/' rel='bookmark' title='Education and Virtualization &#8211; Oh, the Possibilities'>Education and Virtualization &#8211; Oh, the Possibilities</a></li>
<li><a href='http://www.2vcps.com/2011/08/28/what-is-up-at-vmworld-2011/' rel='bookmark' title='What is up at VMworld 2011'>What is up at VMworld 2011</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Would like to help spread the word about the <a href="http://www.astroarch.com/wiki/index.php/Virtualization_Security_Round_Table_Podcast">Virtualization Security Roundtable</a> it will take place this Thursday January 15 at 230 EST.<br />Security topics are outlined in the linked article. I would have to say this is a topic that I really want to master.<br />We consult with many financial institutions and being quicker on this subject would help me answer some of the objections to VMware. Not only to have the right answer but also be able to solve common problems.</p>
<p>Like always I will not be available for the call this week, but I will put in on my calendar so I can go ahead and listen to it every other week.</p>
<p>Related posts:<ol>
<li><a href='http://www.2vcps.com/2009/01/28/virtualization-security-roundtable-2/' rel='bookmark' title='Virtualization Security Roundtable'>Virtualization Security Roundtable</a></li>
<li><a href='http://www.2vcps.com/2009/01/08/education-and-virtualization-oh-the-possibilities/' rel='bookmark' title='Education and Virtualization &#8211; Oh, the Possibilities'>Education and Virtualization &#8211; Oh, the Possibilities</a></li>
<li><a href='http://www.2vcps.com/2011/08/28/what-is-up-at-vmworld-2011/' rel='bookmark' title='What is up at VMworld 2011'>What is up at VMworld 2011</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.2vcps.com/2009/01/14/virtualization-security-roundtable/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

