Skip to main content

OLVM KVM VLAN Tagging Command Line

In this blogpost we will see practical libvirt XML network definition and Linux bridge configuration with VLAN tagging in a KVM environment.
<network>
  <name>vlan100-net</name>
  <forward mode='bridge'/>
  <bridge name='br0.100' />
  <virtualport type='openvswitch'/>
</network>
  
or using the tag (if attaching to a base bridge and tagging per guest):
<interface type='bridge'>
  <source bridge='br0'/>
  <vlan>
    <tag id='100'/>
  </vlan>
  <model type='virtio'/>
</interface>

In this setup: Traffic is tagged with VLAN ID 100. The VM connects to br0, and libvirt applies the tag. Linux Bridge Configuration with VLAN Sub-interface (Manual or via nmcli):
# Create VLAN sub-interface
ip link add link eth0 name eth0.100 type vlan id 100
ip link set eth0.100 up

# Create bridge and attach VLAN interface
ip link add name br100 type bridge
ip link set eth0.100 master br100
ip link set br100 up
Or using nmcli (NetworkManager):
# Create VLAN interface
nmcli connection add type vlan con-name vlan100 dev eth0 id 100

# Create bridge
nmcli connection add type bridge con-name br-vlan100 ifname br-vlan100

# Add VLAN to bridge
nmcli connection add type bridge-slave ifname vlan100 master br-vlan100
VM XML Example (VLAN-aware interface):
<interface type='bridge'>
  <source bridge='br100'/>
  <model type='virtio'/>
</interface>


Using VLAN tagging on the KVM command line provides granular control over VM networking, essential for scalable and secure virtualized infrastructures. Mastery of these CLI tools allows efficient and repeatable network setups without reliance on a GUI.

Comments

Popular posts from this blog

Disable Firewall on Oracle Linux 8

In this blogpost we will see how we can stop/disable the firewall on Oracle Linux 8, the firewall command is same in both linux 7 an linux 8. The below listed is the procedure for stopping and disabling the  firewall on Oracle Linux 8. - Here we can see the firewall deamon in active state - Here when we stop the firewall in previous command, now the firewall daemon is dead - For permanent disabling the firewall on server, we can use "disable" option The following commands will be helpful: #systemctl status firewalld #systemctl stop firewalld #systemctl disable firewalld #systemctl enable firewalld #systemctl start firewalld Hope it helps !! Thanks for reading :) regards, X A H E E R

Enable Desktop on Oracle Solaris 11.4

Oracle Solaris 11 installation has multiple options to choose for installation of an Operating Environment, but mostly Oracle Solaris text install media is used and this installation media doesn't offer the GUI Desktop Environment by default after the installation. This blog post will explain how we can enable the desktop for Oracle Solaris 11.4 operating system, after the completion of installation. We have to install "solaris-desktop" package and reboot the machine and GUI desktop will be enabled for the Operating System. In this blog post my virtual machine is connected to the internet and hence I am able to use available pupblic repository for package installation, if in case internet is not available for the server/machine then we have configure the local/Server  repository for the installation. Follow the below steps for desktop package installation: After installation of dekstop package we are now able to login with GUI desktop environment...

Oracle AVDF Installation and Setup Document

This blogpost will provide you detailed information about Oracle Audit Vault and Database Firewall (Oracle AVDF) setup. Oracle AVDF is a comprehensive Database Activity Monitoring (DAM) solution that integrates with native audit data. Environment Setup: [oracrp@ebs-dev2-db01 ~]$ mkdir -pv /oradb/oracle/avcli mkdir: created directory ‘/oradb/oracle/avcli’ [oracrp@ebs-dev2-db01 ~]$ mkdir -pv /oradb/oracle/avagent mkdir: created directory ‘/oradb/oracle/avagent’ [oracrp@ebs-dev2-db01 ~]$ - Add these variables to the environment file vi DEV2CDB.env # AVS export AVCLI_HOME="/oradb/oracle/avcli" export AV_HOME="/oradb/oracle/avagent" export PATH="$PATH:$AV_HOME/bin" Download the JAR files:   AVDF installation requires one network interface card on respective hosts. IP assigned to AV server NIC will communicate with target databases and IP assigned to DF server will connect to AV Download - Agent jar file:   Login to AV console as avadmin user   - Go t...