<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic VM-Series Firewall on VMware ESXi - get true link status from host NICs in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/vm-series-firewall-on-vmware-esxi-get-true-link-status-from-host/m-p/201951#M59622</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm in the process of deploying a VM-100 under VMWare ESXi 6.5 as standalone host (not member of a VCenter).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Everything has passed smoothly, however I want my V-100 network interface list to display the TRUE link status of each physical NIC port at the VMware host.&amp;nbsp; (I.e. whether or not live cables are plugged in to their respctive host NICs).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have tried to follow the cookbook and enabled Promiscuous mode, MAC Address Changes and Forged Transmits for every vSwitch connected to their respective vmnics.&amp;nbsp; But still all VM-100 NIC display as Connected despiter when I unplug cables.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The only way I can force a VM-100 NIC display as disconnected is to disconnect its vmnic inESXi's V-100's VM settings.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What am I doing wrong?&amp;nbsp; I assume it is correct that we should be able to monitor the TRUE NIC link status (i.e. cable connected or not) from the VM-100's point of view?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot for comments on this &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;best regards Tor&lt;/P&gt;</description>
    <pubDate>Fri, 23 Feb 2018 09:53:57 GMT</pubDate>
    <dc:creator>LCMember4427</dc:creator>
    <dc:date>2018-02-23T09:53:57Z</dc:date>
    <item>
      <title>VM-Series Firewall on VMware ESXi - get true link status from host NICs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/vm-series-firewall-on-vmware-esxi-get-true-link-status-from-host/m-p/201951#M59622</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm in the process of deploying a VM-100 under VMWare ESXi 6.5 as standalone host (not member of a VCenter).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Everything has passed smoothly, however I want my V-100 network interface list to display the TRUE link status of each physical NIC port at the VMware host.&amp;nbsp; (I.e. whether or not live cables are plugged in to their respctive host NICs).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have tried to follow the cookbook and enabled Promiscuous mode, MAC Address Changes and Forged Transmits for every vSwitch connected to their respective vmnics.&amp;nbsp; But still all VM-100 NIC display as Connected despiter when I unplug cables.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The only way I can force a VM-100 NIC display as disconnected is to disconnect its vmnic inESXi's V-100's VM settings.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What am I doing wrong?&amp;nbsp; I assume it is correct that we should be able to monitor the TRUE NIC link status (i.e. cable connected or not) from the VM-100's point of view?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot for comments on this &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;best regards Tor&lt;/P&gt;</description>
      <pubDate>Fri, 23 Feb 2018 09:53:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/vm-series-firewall-on-vmware-esxi-get-true-link-status-from-host/m-p/201951#M59622</guid>
      <dc:creator>LCMember4427</dc:creator>
      <dc:date>2018-02-23T09:53:57Z</dc:date>
    </item>
    <item>
      <title>Re: VM-Series Firewall on VMware ESXi - get true link status from host NICs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/vm-series-firewall-on-vmware-esxi-get-true-link-status-from-host/m-p/201974#M59628</link>
      <description>&lt;P&gt;Have you got the NICS directly passed to the GUEST somehow?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Normally there is a V-Switch, the guest connects to that so assumes the link is always up. and you have to virtually unplug them as you describe.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Feb 2018 12:11:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/vm-series-firewall-on-vmware-esxi-get-true-link-status-from-host/m-p/201974#M59628</guid>
      <dc:creator>RobinClayton</dc:creator>
      <dc:date>2018-02-23T12:11:09Z</dc:date>
    </item>
    <item>
      <title>Re: VM-Series Firewall on VMware ESXi - get true link status from host NICs</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/vm-series-firewall-on-vmware-esxi-get-true-link-status-from-host/m-p/202009#M59641</link>
      <description>&lt;P&gt;Having Re-read, I can see you are using V-SWITCH.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Think of the Physicsal NIC/CABLE as being plugged into one port of the V-Swith (You don't see this) ,&amp;nbsp; and the VNIC is plugged into another port.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the real world switch, if you unplug from one port the others don't go off and it is the same in V-Switch.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The V-Switch does not even need (and quite often does not have) any physical NIC or connection to the real network, traffic can hapily traverse between two or more guests on the same host(s) physicaly unconnected v-switch.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Feb 2018 14:59:37 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/vm-series-firewall-on-vmware-esxi-get-true-link-status-from-host/m-p/202009#M59641</guid>
      <dc:creator>RobinClayton</dc:creator>
      <dc:date>2018-02-23T14:59:37Z</dc:date>
    </item>
  </channel>
</rss>

