• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

VMware Cloud Director, Remote Desktop and NATing woes

Frick

Fishfaced Nincompoop
Joined
Feb 27, 2006
Messages
18,928 (2.86/day)
Location
Piteå
System Name Black MC in Tokyo
Processor Ryzen 5 5600
Motherboard Asrock B450M-HDV
Cooling Be Quiet! Pure Rock 2
Memory 2 x 16GB Kingston Fury 3400mhz
Video Card(s) XFX 6950XT Speedster MERC 319
Storage Kingston A400 240GB | WD Black SN750 2TB |WD Blue 1TB x 2 | Toshiba P300 2TB | Seagate Expansion 8TB
Display(s) Samsung U32J590U 4K + BenQ GL2450HT 1080p
Case Fractal Design Define R4
Audio Device(s) Line6 UX1 + some headphones, Nektar SE61 keyboard
Power Supply Corsair RM850x v3
Mouse Logitech G602
Keyboard Cherry MX Board 1.0 TKL Brown
VR HMD Acer Mixed Reality Headset
Software Windows 10 Pro
Benchmark Scores Rimworld 4K ready!
Hey hey.

So a while back I was tasked with setting up a VM in VMware's Cloud Director. Which btw uses flash as an interface, which is so very stupid. But anyway, that VM was to be accessed via RDP. No worries, just create the vApp and the VM, set up some rules and off you go. Simple. Now though, we need another VM ... and I just can't get that damn NAT stuff to work, or something is up with my skills at server settings, which are abysmal. I tell you, wow, I have no idea what I'm doing. I will elaborate a bit in the end on the post on what we are doing with the VMs.

They run Windows Server 2016, without anything installed or set up except remote desktop. Firewall rules are the same on both machines, as are every security policy I have found, and they run the same services. Both have static IP adresses, both are Fenced, which probably means something.

So here is the NAT/firewall setup:

upload_2017-3-21_16-18-43.png

upload_2017-3-21_16-25-50.png

("external" in the FW rules is our assigned IP, and I will tighten up the rules when I get it working)

VM1 have one admin account (for the company I work for), and one user account for the user. Both of them work fine with RDP, using IPxxx:10001.

VM2 so far has one admin account, which does not work with RDP. Outbound traffic works on both machines. It was made from a template our cloud provider has, same as VM1.


I assume I have missed something in the OS setup, but I have no idea what it can be. What I have found out is that there is about a million different ways of doing almost the same things , so one question is if I'm even in the right place. Or it is something about the virtual network. There are several steps to untangle VMs from networks, but I think I have gotten the gist of it.

Any help is greatly appreciated, even if it's just a tiny pointer. I have all the time in the world and it's kinda fun actually, but it has to work too. People and their expectations on paid services.

The purpose of the VMs: Electrical documentation. We have this ancient but simple CAD system in which we place everything related to electricity, usually in larger buildings: schematics, building blueprints, which tenant hires what areas and what exactly they are paying for, images of how it actually looks and so on. The CAD engine is truly ancient, but it works and even though there are speedier and better solutions avaliable they have a tendency to be complicated. This is so simple any technophobe can use it, and for that very reason I find it ... fiddly and non-intuitive. It is both of those things, but whatever. It works, and the market is infinite, especially now when Sweden recently passed a law stating the owners of buildings has to be able to procude documents on the electrical system. You know those large industrial buildings, or largeish office complexes from the 60's/70's? They have a tendency to be nightmarish for electricians to work in, and often they have to spend hours or even days on just finding out which circuit uses what breaker, and everything looks like Cthulu in badly salvaged power armor.
 

Attachments

  • upload_2017-3-21_16-14-46.png
    upload_2017-3-21_16-14-46.png
    17.3 KB · Views: 469
Joined
Dec 7, 2005
Messages
972 (0.14/day)
System Name GRAYSCALE\Butterfly
Processor Intel Core i7 8700k @ 5.2Ghz\Intel 4690k
Motherboard ASUS Maximus X Hero \Asus Z97 Maximus Hero VI
Cooling Custom Water\Stock
Memory 2x8GB G.Skill RGB DDR4-3200 \2x8GB Crucial Ballistix DDR3-1600
Video Card(s) NVidia Titan Xp w/ EK Block \ MSI Reference GTX 780
Storage 512GB Samsung 960 PRO (M.2)\128GB OCZ Vertex 4 + 500GB WD Black
Display(s) Asus PG278Q ROG Swift\Acer x213h 21.3'' 1920x1080 LCD
Case Thermaltake P3 Core\NZXT S340
Audio Device(s) Integrated w/ AKG K702 65th Anny's\Integrated
Power Supply Corsair HXi 1000 \Corsair HX850
Mouse Logitech G502 Proteus Spectrum\2014 Razer Naga
Keyboard Ducky One TKL RGB
Software Windows 10 Pro (x64)\Windows 10 Pro (x64)


Shouldn't your rules be switched. The source would be external:10000 and the destination would be the IP of the VM.
 

eidairaman1

The Exiled Airman
Joined
Jul 2, 2007
Messages
40,435 (6.59/day)
Location
Republic of Texas (True Patriot)
System Name PCGOD
Processor AMD FX 8350@ 5.0GHz
Motherboard Asus TUF 990FX Sabertooth R2 2901 Bios
Cooling Scythe Ashura, 2×BitFenix 230mm Spectre Pro LED (Blue,Green), 2x BitFenix 140mm Spectre Pro LED
Memory 16 GB Gskill Ripjaws X 2133 (2400 OC, 10-10-12-20-20, 1T, 1.65V)
Video Card(s) AMD Radeon 290 Sapphire Vapor-X
Storage Samsung 840 Pro 256GB, WD Velociraptor 1TB
Display(s) NEC Multisync LCD 1700V (Display Port Adapter)
Case AeroCool Xpredator Evil Blue Edition
Audio Device(s) Creative Labs Sound Blaster ZxR
Power Supply Seasonic 1250 XM2 Series (XP3)
Mouse Roccat Kone XTD
Keyboard Roccat Ryos MK Pro
Software Windows 7 Pro 64

Frick

Fishfaced Nincompoop
Joined
Feb 27, 2006
Messages
18,928 (2.86/day)
Location
Piteå
System Name Black MC in Tokyo
Processor Ryzen 5 5600
Motherboard Asrock B450M-HDV
Cooling Be Quiet! Pure Rock 2
Memory 2 x 16GB Kingston Fury 3400mhz
Video Card(s) XFX 6950XT Speedster MERC 319
Storage Kingston A400 240GB | WD Black SN750 2TB |WD Blue 1TB x 2 | Toshiba P300 2TB | Seagate Expansion 8TB
Display(s) Samsung U32J590U 4K + BenQ GL2450HT 1080p
Case Fractal Design Define R4
Audio Device(s) Line6 UX1 + some headphones, Nektar SE61 keyboard
Power Supply Corsair RM850x v3
Mouse Logitech G602
Keyboard Cherry MX Board 1.0 TKL Brown
VR HMD Acer Mixed Reality Headset
Software Windows 10 Pro
Benchmark Scores Rimworld 4K ready!


Shouldn't your rules be switched. The source would be external:10000 and the destination would be the IP of the VM.

I thought so too, but no. Source here means the Internet, destination is the adress from which I'm connecting to the internet. And the highlighted VM connects properly, but not the other one.
 

Frick

Fishfaced Nincompoop
Joined
Feb 27, 2006
Messages
18,928 (2.86/day)
Location
Piteå
System Name Black MC in Tokyo
Processor Ryzen 5 5600
Motherboard Asrock B450M-HDV
Cooling Be Quiet! Pure Rock 2
Memory 2 x 16GB Kingston Fury 3400mhz
Video Card(s) XFX 6950XT Speedster MERC 319
Storage Kingston A400 240GB | WD Black SN750 2TB |WD Blue 1TB x 2 | Toshiba P300 2TB | Seagate Expansion 8TB
Display(s) Samsung U32J590U 4K + BenQ GL2450HT 1080p
Case Fractal Design Define R4
Audio Device(s) Line6 UX1 + some headphones, Nektar SE61 keyboard
Power Supply Corsair RM850x v3
Mouse Logitech G602
Keyboard Cherry MX Board 1.0 TKL Brown
VR HMD Acer Mixed Reality Headset
Software Windows 10 Pro
Benchmark Scores Rimworld 4K ready!
Fiddling with networks now. I have a feeling this vCloud Director thing is not very good at removing the same things I remove. Just now I got an error messege referring to a vApp I made and removed the same day I started this topic.

And it has a tendency to not name the machines I create the way I name them during setup. Ditto with network settings. Blah.

EDIT:

Found something. This is the network of the working VM.
upload_2017-3-23_10-31-46.png



This is the new network to which I connected a new VM:

upload_2017-3-23_10-34-8.png


It has two more connections ... and I have no idea what they are. This happens if I make a new vApp/VM and connect it to the network the working VM is connected to. Nothing happens to the working VM, but the new VM gets those two external connections. New stuff to Google!
 
Last edited:

Frick

Fishfaced Nincompoop
Joined
Feb 27, 2006
Messages
18,928 (2.86/day)
Location
Piteå
System Name Black MC in Tokyo
Processor Ryzen 5 5600
Motherboard Asrock B450M-HDV
Cooling Be Quiet! Pure Rock 2
Memory 2 x 16GB Kingston Fury 3400mhz
Video Card(s) XFX 6950XT Speedster MERC 319
Storage Kingston A400 240GB | WD Black SN750 2TB |WD Blue 1TB x 2 | Toshiba P300 2TB | Seagate Expansion 8TB
Display(s) Samsung U32J590U 4K + BenQ GL2450HT 1080p
Case Fractal Design Define R4
Audio Device(s) Line6 UX1 + some headphones, Nektar SE61 keyboard
Power Supply Corsair RM850x v3
Mouse Logitech G602
Keyboard Cherry MX Board 1.0 TKL Brown
VR HMD Acer Mixed Reality Headset
Software Windows 10 Pro
Benchmark Scores Rimworld 4K ready!
So it turns out fencing did not work. That is what the extra connections is about. I am not clear on what it does, but it is described as such: "Fencing allows identical virtual machines in different vApps to be powered on without conflict by isolating the MAC and IP addresses of the virtual machines." A guy who helped me a bit but now is unavaliable said I should probably use it. I was certain I had tried without fencing, but probably not. Fencing and some strangeness with user accounts was the culprips I believe. Some things learned then!
 
Top