The security requirements of the virtual environment are a critical part of the vSphere design. If components of the virtual data center are compromised, a great deal of damage can be done, from powering off virtual machines, to accessing sensitive data, to impacting business processes by disrupting or deleting virtual resources. To identify the security requirements, there are a few questions that the data center architect should ask:
- Which users require access? What resources should be available to the users (administrators, users, auditors, and so on)?
- Do the resources require physical separation to ensure security?
- Which resources should be separated? For example, concerning separating DMZ resources from internal production resources, is it OK to share storage between the DMZ and internal production resources? What about computing resources?
- Are there...