Organization Virtual Datacenter Networks
An organization virtual datacenter network is contained within a vCloud Director organization virtual
datacenter and is available to all the vApps in the organization. An organization virtual datacenter network
allows vApps within an organization to communicate with each other. You can connect an organization
virtual datacenter network to an external network to provide external connectivity. You can also create an
isolated organization virtual datacenter network that is internal to the organization. Certain types of
organization virtual datacenter networks are backed by network pools.
Only system administrators can create organization virtual datacenter networks. System administrators and
organization administrators can manage organization virtual datacenter networks, although there are some
limits to what an organization administrator can do.
vApp Networks
A vApp network is contained within a vApp and allows virtual machines in the vApp to communicate with
each other. You can connect a vApp network to an organization virtual datacenter network to allow the
vApp to communicate with other vApps in the organization and outside of the organization, if the
organization virtual datacenter network is connected to an external network. vApp networks are backed by
network pools.
Most users with access to a vApp can create and manage their own vApp networks. Working with vApp
networks is described in the VMware vCloud Director User's Guide.
Network Pools
A network pool is a group of undifferentiated networks that is available for use within an organization
virtual datacenter. A network pool is backed by vSphere network resources such as VLAN IDs, port groups,
or Cloud isolated networks. vCloud Director uses network pools to create NAT-routed and internal
organization virtual datacenter networks and all vApp networks. Network traffic on each network in a pool
is isolated at layer 2 from all other networks.
Each organization virtual datacenter in vCloud Director can have one network pool. Multiple organization
virtual datacenters can share the same network pool. The network pool for an organization virtual
datacenter provides the networks created to satisfy the network quota for an organization virtual
datacenter.
Only system administrators can create and manage network pools.
Organizations
vCloud Director supports multi-tenancy through the use of organizations. An organization is a unit of
administration for a collection of users, groups, and computing resources. Users authenticate at the
organization level, supplying credentials established by an organization administrator when the user was
created or imported. System administrators create and provision organizations, while organization
administrators manage organization users, groups, and catalogs. Organization administrator tasks are
described in the VMware vCloud Director User's Guide.
Users and Groups
An organization can contain an arbitrary number of users and groups. Users can be created by the
organization administrator or imported from a directory service such as LDAP. Groups must be imported
from the directory service. Permissions within an organization are controlled through the assignment of
rights and roles to users and groups.
Chapter 1 Getting Started with vCloud Director
VMware, Inc. 13