Category Archives: VMware

VMware

Unleashing the Power of Multi-Hypervisor and Hybrid Cloud

Hotlink: The Multi-Hypervisor Management Tool for Your Internal Virtualization Infrastructure

As I was walking around the VMworld 2012 exhibition hall, I stumbled upon a booth that caught my attention – Hotlink. I had never heard of them before, but after talking to their CEO, Lynn LeBlanc, and seeing their product demo, I was impressed with what they have to offer. In this blog post, I’ll share with you what I learned about Hotlink and their innovative approach to multi-hypervisor management.

Hotlink’s latest offering is their Hybrid Express solution, which allows you to easily manage your internal vSphere infrastructure and your Amazon public IaaS cloud. This solution is designed to provide a seamless experience for administrators who need to move workloads between their on-premises infrastructure and the cloud.

However, it’s worth noting that Hotlink’s best selling offering is their multi-hypervisor management tool – Hotlink SuperVisor. This tool allows you to manage multiple hypervisors such as vSphere, Hyper-V, and Xen from a single interface. What I like about this concept is the idea that you could have hypervisor tiers of service, where perhaps your highest priority VMs are on vSphere and lower priority VMs are in Hyper-V. It’s all managed from vCenter, and VMs can easily be moved back and forth.

According to Lynn, by having these hypervisor tiers, Hotlink says that you can buy Hotlink SuperVISOR and still save your company a lot of money. This is because you can use the lower-cost Hyper-V or Xen hypervisors for non-critical workloads, while still using vSphere for your most important VMs. This approach could help organizations reduce their overall virtualization costs, while still maintaining a high level of performance and reliability.

I was also impressed with the product demo that Hotlink provided. They showed how easy it is to administer both your internal vSphere infrastructure and your Amazon public IaaS cloud using their Hybrid Express solution. The demo included showing how to move VMs back and forth between the two environments, as well as how to manage storage and networking across both environments.

One thing that caught my attention was the use of PowerCLI on Amazon EC2 at the end of the video. This is a very cool feature that allows you to automate tasks and manage your AWS environment using the same PowerCLI scripts that you use in your vSphere environment. This could be a game-changer for organizations that use both AWS and vSphere, as it allows them to leverage the power of PowerCLI across both environments.

In conclusion, Hotlink is a company that offers some innovative solutions for multi-hypervisor management and hybrid cloud management. Their Hybrid Express solution and Hotlink SuperVISOR tool offer a seamless experience for administrators who need to manage both their on-premises infrastructure and their Amazon public IaaS cloud. Additionally, the use of PowerCLI on Amazon EC2 is a very cool feature that could be a game-changer for organizations that use both AWS and vSphere. If you’re looking for a solution that can help you manage your virtualization infrastructure more efficiently and cost-effectively, Hotlink is definitely worth considering.

VMworld 2018 Day 1 Recap

Day 1 at VMworld Barcelona: A Journey into the World of DevOps and Virtualization

As we step into the first day of VMworld Barcelona, we are greeted by a bustling crowd of technology enthusiasts, all eager to explore the latest innovations in the world of virtualization and DevOps. The conference is divided into two main tracks: one focused on “Partners” and the other on “Innovation”. As we make our way through the crowded halls, we notice a distinct lack of people in the “Partners” track, indicating that most attendees are here to learn about the latest technologies rather than network with fellow partners.

Our first session is a basic yet intriguing talk on DevOps culture and VMware products. The speaker poses the question, “What is DevOps?” but none of the audience members dare to offer a definition, indicating the diversity of perspectives on this topic. However, the speaker manages to convey the essence of DevOps through a series of statistics that show how companies who have adopted DevOps practices have seen significant improvements in their development cycles.

Next, we attend a talk on delivering production more efficiently and sustainably. The speaker emphasizes the importance of not overburdening operations teams with repetitive tasks and instead empowering developers to create documentation that is valuable to both teams. This approach not only improves productivity but also fosters better collaboration between devs and ops.

After a brief break, we dive into a tech preview of VMware’s upcoming vSAN capabilities. The company is working on native backup and data protection features for its virtual storage area network (VSAN), which will soon enable cluster-level snapshots and backup. This feature has the potential to disrupt the market and challenge established players like Veeam, Avamar, and NetBackup. To achieve this functionality, VMware had to redevelop its snapshot mechanism, making it more robust and flexible.

One of the challenges that VMware faces is providing an intuitive user experience that is integrated with vCenter and leverages storage policies to configure backups, retention, and replication. On paper, this feature sounds like a killer feature that could potentially disrupt the market and give VMware a competitive edge. However, there are some limitations, such as the absence of file-level backup and agent-based backup, which may be addressed in future updates.

Next, we attend a high-level conference introducing Vmware Cloud Foundation (VCF), a new product that simplifies the installation and configuration of vSphere, NSX, and vSAN-based infrastructure. This tool automates the process of building an entire virtual infrastructure based on Validated Designs from VMware, ensuring that the infrastructure is optimized for performance, security, and scalability.

One of the key benefits of VCF is its ability to connect hybrid environments with public clouds, particularly AWS. The product also streamlines the lifecycle management of the platform, allowing for easy updates and upgrades in just a few clicks. As VMware emphasizes the importance of hybrid cloud, this feature is a significant advantage for organizations looking to leverage the benefits of both on-premises and cloud-based infrastructure.

As we make our way through the exhibition hall, we come across the “Expert Bar”, a unique concept that allows attendees to consult with VMware experts categorized by products. We have the opportunity to meet two experts, who provide valuable insights into their respective areas of expertise. Although we don’t receive direct answers to our questions, the “Expert Bar” concept is refreshingly informal and helpful.

In conclusion, day one at VMworld Barcelona has been an exciting journey into the world of DevOps and virtualization. With a mix of basic yet intriguing talks and innovative product introductions, we are left with a sense of wonder and anticipation for what the remaining days of the conference will bring.

VMware’s Response to Log4j RCE Vulnerability (CVE-2021-44228)

The recent vulnerability discovered in Apache Log4j has sent shockwaves throughout the cybersecurity community. As a Java-based logging utility used by countless applications worldwide, this remote code execution vulnerability (CVE-2021-44228) presents a formidable threat to organizations of all sizes and industries. With VMware products also utilizing Log4j, the impact of this vulnerability extends far beyond Apache itself.

VMware has published Security Advisory VMSA-2021-0028 – VMware Response to Apache Log4j Remote Code Execution Vulnerability (CVE-2021-44228) to address the issue. The advisory lists affected VMware products under evaluation, as well as possible workarounds to mitigate the risk until software updates are released. However, it’s essential to note that not all VMware products have been evaluated yet, and the list of affected products is expected to grow.

As a precautionary measure, VMware recommends that customers check the security advisory regularly for updates. The company has also provided additional information on workarounds for some of its most common products in separate Knowledge Base (KB) articles. These KBs offer guidance on how to mitigate the vulnerability until software updates are available.

The impact of this vulnerability is significant, as it affects not only VMware products but also countless other applications that rely on Log4j. The ease of exploitation and the sheer number of vulnerable devices make this a critical issue that requires immediate attention from organizations using affected software.

In light of this vulnerability, companies must take proactive measures to protect themselves. This includes regularly checking the VMware security advisory for updates on affected products and implementing workarounds as soon as possible. It’s also essential to assess the scope of the vulnerability within your organization and prioritize patching and updating affected systems as soon as possible.

Moreover, this incident highlights the importance of staying vigilant and proactive in addressing cybersecurity threats. Organizations must maintain a culture of security awareness and regularly assess their systems for vulnerabilities to ensure they remain protected against evolving threats.

In conclusion, the recent Log4j vulnerability has the potential to impact countless organizations worldwide. VMware’s response to the issue, as outlined in Security Advisory VMSA-2021-0028, provides guidance on mitigating the risk until software updates are available. It is crucial for organizations using affected products to remain vigilant and proactive in addressing this vulnerability to prevent potential attacks and minimize the risk of exploitation.

Unlocking the Full Potential of VMware Photon OS 4.0

VMware Photon OS 4.0 Released with Linux Kernel 5.10 and PREEMPT_RT Patchset

============================================================================

VMware has recently released Photon OS 4.0, which includes several new features and improvements over the previous version. This release includes a Linux kernel 5.10-based platform with PREEMPT_RT patchset, which provides real-time performance optimizations for demanding workloads. The article discusses the new features and changes in Photon OS 4.0 and provides information on how to download and install it.

New Features and Improvements

——————————

Photon OS 4.0 includes several new features and improvements, including:

### Linux Kernel 5.10

The latest version of Photon OS is based on Linux kernel 5.10, which provides better performance and stability for demanding workloads.

### PREEMPT_RT Patchset

The PREEMPT_RT patchset is included in Photon OS 4.0, which provides real-time performance optimizations for demanding workloads. This patchset includes several improvements, such as:

* Improved scheduling algorithms for better performance and responsiveness

* Enhanced interrupt handling for faster context switching

* Optimized system call handling for reduced latency

### SELinux Support

Photon OS 4.0 now supports SELinux (Security-Enhanced Linux) in both Permissive and Enforce modes. This provides better security features and flexibility for users who require strict access controls.

### Container Support

Photon OS 4.0 includes improved support for containers, which allows for easier deployment and management of containerized applications. This includes support for Docker, rkt, and other popular container runtimes.

### Networking Improvements

The latest version of Photon OS includes several networking improvements, such as:

* Improved network stack performance for better throughput and lower latency

* Enhanced routing and firewalling features for better security and control

* Support for new network technologies and protocols, such as IPv6 and VXLAN

### Disk Encryption

Photon OS 4.0 includes improved disk encryption features, which provide better security for data at rest. This includes support for full-disk encryption and other advanced encryption technologies.

### ARM Support

Photon OS 4.0 now supports ARM-based platforms, including the Raspberry Pi 4. This allows users to run Photon OS on a wider range of hardware, including low-power and cost-effective devices.

### GPG Key Management

The latest version of Photon OS includes improved GPG key management features, which provide better security for package updates and other cryptographic operations.

How to Download and Install Photon OS 4.0

——————————————

To download and install Photon OS 4.0, follow these steps:

1. Go to the VMware Photon OS download page and select the appropriate version for your hardware architecture (x86_64 or aarch64).

2. Download the ISO file and create a bootable USB drive using a tool such as Rufus.

3. Boot your system from the USB drive and select the “Install Photon OS” option.

4. Follow the installation wizard to complete the installation process.

Conclusion

———-

Photon OS 4.0 is a significant release that includes several new features and improvements over the previous version. With its Linux kernel 5.10-based platform, PREEMPT_RT patchset, SELinux support, container support, networking improvements, disk encryption, ARM support, and GPG key management features, Photon OS 4.0 provides a powerful and secure platform for demanding workloads. Whether you’re running a data center, a cloud environment, or a local application, Photon OS 4.0 is a great choice for your infrastructure needs.

Explore vSphere Lab and SMB Storage Solutions with Drobo and David Davis – Plus Prizes!

Virtualization Storage Challenges: A Live Chat for Small Shops

As a small shop, virtualization can offer numerous benefits, such as improved resource utilization, increased agility, and enhanced security. However, one of the biggest challenges that small shops face when implementing virtualization is storage. In this live chat, we will discuss the practical advice and information that IT folks need to overcome these storage challenges and make the most out of their virtualization investment.

Join us on Tuesday, October 30th from 10:30-11AM EDT as we host a live chat with expert David Davis, author of the TrainSignal vSphere video training library, and Mario Blandini, Chief Evangelist with Drobo. David will be breaking down the results of a live poll that asks participants about their virtualization storage challenges and how they are addressed.

We invite all small shops (fewer than 250 users) to participate in this live chat and survey. By doing so, you will not only have the opportunity to ask questions and get practical advice from David, but you will also be entered to win one of two prizes: a TrainSignal DVD course or a Drobo B800i iSCSI SAN system, both of which are perfect for building a virtualization lab at home or storing personal data and media.

During the live chat, we will discuss the following topics:

1. Common storage challenges faced by small shops when implementing virtualization.

2. How to choose the right storage solution for your virtualization needs.

3. Best practices for designing and deploying virtualization storage.

4. Tips for optimizing virtualization performance and avoiding common pitfalls.

David and Mario will share their expertise and experiences in addressing these challenges, and we encourage all participants to ask questions and share their own insights. This live chat is an excellent opportunity to learn from industry experts and connect with other IT professionals who face similar challenges.

To participate in the live chat, simply register here. We look forward to hearing your thoughts and addressing your virtualization storage challenges!

Workaround for Log4j Vulnerability in vRealize Automation 8 and vRealize Orchestrator 8

VMware Provides Workaround for Log4j Vulnerabilities in vRealize Automation and vRealize Orchestrator

VMware has released a temporary workaround for the recently discovered Log4j vulnerabilities (CVE-2021-44228 and CVE-2021-45046) affecting vRealize Automation 8.0 through 8.6.1 and vRealize Orchestrator 8.1 through 8.6.1. The workaround is available in KB87120 and provides a solution for affected customers until the next scheduled release of vRealize Automation and vRealize Orchestrator.

The temporary workaround involves creating simultaneous VM snapshots without memory for all nodes in the cluster, connecting to one of the vRealize Automation/vRealize Orchestrator nodes via SSH using the root account, executing a command to backup and modify several files, redeploying the vRealize Automation/vRealize Orchestrator Kubernetes pods across all nodes in the cluster, and verifying that the workaround has been successfully applied.

It is essential to note that this workaround is only a temporary solution and should be applied as soon as possible. Customers are advised to check the current status of VMSA-2021-0028 for updates on addressing the vulnerability. The workaround should not be re-applied, and upgrades documented in VMSA-2021-0028 should be applied as soon as they become available.

To apply the workaround, customers must ensure that they have valid snapshots of their vRealize Automation/vRealize Orchestrator appliances before applying the solution. The process involves connecting to one of the nodes via SSH using the root account and executing a specific command to create a backup of all files that will be modified, patch several files, and redeploy the vRealize Automation/vRealize Orchestrator pods across all nodes in the cluster. After completing these steps, customers should verify that the workaround has been successfully applied by running a specific command.

The output of the SSH command will indicate if the workaround has been successfully applied or not. If the workaround was successfully applied, there should be no output from the command. The last step is to verify that the workaround has been completed, and this can be done by executing another command provided in KB87120.

VMware advises customers to continue checking the current status of VMSA-2021-0028 for updates on addressing the vulnerability. The company is working on providing a permanent solution through future vRealize Automation and vRealize Orchestrator releases, but no timeline has been provided yet.

In conclusion, VMware has provided a temporary workaround for the Log4j vulnerabilities affecting vRealize Automation and vRealize Orchestrator until the next scheduled release of these products. Customers should apply the workaround as soon as possible and continue to check the current status of VMSA-2021-0028 for updates on addressing the vulnerability.

Unlock Enhanced Monitoring and Management for Your vSphere Environment with New vRealize Operations Management Packs

VMware’s Latest Updates to vRealize Operations and True Visibility Suite

In a recent announcement, VMware has made significant updates to their vRealize Operations and vRealize True Visibility Suite offerings. These changes aim to provide customers with more comprehensive monitoring and management capabilities, as well as greater flexibility in their deployment and usage of these solutions. In this blog post, we’ll dive deeper into the new features and updates, and explore how they can benefit your organization’s IT operations.

New Management Packs for vRealize Operations Customers

As part of VMware’s commitment to providing customers with the best possible experience, the company has released new versions of all 20 compute and storage management packs for existing vRealize Operations customers. These management packs are now available for download on the vRealize Operations Management Packs VMware Customer Connect download page.

The new management packs include:

* Compute management packs for servers, applications, and desktops

* Storage management packs for storage area networks (SANs), network-attached storage (NAS), and direct-attached storage (DAS)

* Network management packs for network devices, including switches, routers, and firewalls

* Virtualization and container management packs for VMware vSphere, vCenter, and NSX-T

* Database management packs for Oracle, SQL Server, and other popular databases

* Application management packs for popular applications such as Exchange, SharePoint, and Oracle E-Business Suite

End of Availability for vRealize True Visibility Suite Standard Edition

VMware has announced the end of availability for the vRealize True Visibility Suite Standard edition. This edition consisted primarily of the 3rd party compute and storage management packs that are now being provided free of charge to all existing vRealize Operations customers. The Standard edition will no longer be available for purchase or download after November 11, 2021.

Changes to Advanced and Enterprise Editions

VMware has made changes to the Advanced and Enterprise editions of vRealize True Visibility Suite as well. All management packs have been moved from the connectors category and the ServiceNow management pack to vRealize True Visibility Suite Advanced. Additionally, based on customer feedback, VMware is now offering new vRealize True Visibility Technology Modules which focus on specific use cases. These new modules are separated into the following categories:

* Connectors

* Network

* Virtualization/Containers

* Database

* Applications

Licensing varies based on the module, but generally, they are based on increments of 10 or 100 objects/instances monitored per year.

New vRealize True Visibility Technology Modules

VMware’s new vRealize True Visibility Technology Modules offer customers more flexibility and choice in their deployment and usage of these solutions. These modules focus on specific use cases and are available in the following categories:

* Connectors: This module provides connectivity to other systems, such as ServiceNow, Microsoft System Center, and BMC Helix.

* Network: This module provides visibility into network devices, including switches, routers, and firewalls.

* Virtualization/Containers: This module provides visibility into virtualized infrastructure, including VMware vSphere, vCenter, and NSX-T.

* Database: This module provides visibility into popular databases such as Oracle, SQL Server, and other databases.

* Applications: This module provides visibility into popular applications such as Exchange, SharePoint, and Oracle E-Business Suite.

Conclusion

VMware’s latest updates to vRealize Operations and True Visibility Suite offer customers more comprehensive monitoring and management capabilities, as well as greater flexibility in their deployment and usage of these solutions. With the new management packs, technology modules, and changes to the Advanced and Enterprise editions, customers can now better monitor and manage their IT infrastructure, improve performance and efficiency, and reduce costs. As a result, organizations can make more informed decisions about their IT operations and strategic planning, and stay ahead of the competition in today’s fast-paced digital landscape.

VMware Tanzu and Red Hat OpenShift

This is a blog post comparing Red Hat OpenShift and VMware Tanzu, two popular Kubernetes platform options. The author discusses the similarities and differences between the two platforms and provides guidance on how to choose the best one for your needs.

The post begins by highlighting the growing demand for Kubernetes platforms and the importance of selecting the right one for your organization. The author then introduces Red Hat OpenShift and VMware Tanzu as two popular options, and provides an overview of each platform’s features and capabilities.

The author then delves into a detailed comparison of the two platforms, discussing their deployment models, security features, scalability, and support for additional tools and services. The post also touches on the topic of vendor lock-in and the importance of considering your organization’s specific needs and requirements when selecting a platform.

Throughout the post, the author provides examples and anecdotes to illustrate the similarities and differences between Red Hat OpenShift and VMware Tanzu, and offers guidance on how to evaluate and compare the two platforms based on your organization’s specific needs. The post concludes by emphasizing the importance of carefully evaluating your options and selecting the best platform for your organization’s needs.

Overall, this blog post provides a comprehensive comparison of Red Hat OpenShift and VMware Tanzu, and offers valuable insights and guidance for organizations considering these platforms for their Kubernetes needs.

VMware vRealize Automation 8.5 Released

VMware vRealize Automation 8.5: Enhancements and New Capabilities

VMware vRealize Automation 8.5 has recently reached general availability as of August 19, 2021, bringing with it several enhancements and new capabilities that further improve the automation and management of virtual infrastructure. This release includes a number of exciting features that will benefit users looking to streamline their IT operations and increase efficiency.

One of the key enhancements in vRealize Automation 8.5 is the introduction of a new web client interface. This modern, responsive interface provides a more intuitive user experience, with improved navigation and search capabilities. The new interface also includes support for multi-factor authentication, providing an additional layer of security for users.

Another significant enhancement in vRealize Automation 8.5 is the addition of support for Amazon Web Services (AWS) and Microsoft Azure clouds. This allows users to extend their virtual infrastructure beyond on-premises environments and take advantage of the scalability and cost benefits of cloud computing. With this release, users can now manage and automate their hybrid cloud environments with ease.

VMware vRealize Automation 8.5 also includes a number of new capabilities that enable more advanced automation and management of virtual infrastructure. For example, the release introduces a new feature called “Workflows,” which allows users to create and execute complex workflows across multiple resources, including virtual machines, networks, and storage. This feature provides a powerful way to automate repetitive tasks and streamline IT operations.

In addition, vRealize Automation 8.5 includes enhanced support for DevOps and Continuous Integration/Continuous Deployment (CI/CD) pipelines. This release introduces a new “Pipeline” feature that allows users to model and automate their software development lifecycle, from source code management to deployment and testing. This feature provides a more efficient way to manage the software development process and improve collaboration between development and operations teams.

VMware vRealize Automation 8.5 also includes several bug fixes and other improvements, as documented in the Resolved Issues portion of the VMware vRealize Automation 8.5 Release Notes. These fixes and improvements address a range of issues, from performance enhancements to resolving specific compatibility concerns.

For additional information on this release of vRealize Automation, be sure to check out the following blog posts and documents:

* VMware vRealize Automation 8.5 Release Notes

* VMware vRealize Automation 8.5 Release Announcement

* Search for “vRealize Automation 8.5” on the VMware website for additional resources and documentation.

Overall, the latest release of VMware vRealize Automation offers a number of exciting enhancements and new capabilities that will benefit users looking to automate and manage their virtual infrastructure. With its modern web client interface, support for hybrid cloud environments, and advanced automation features, vRealize Automation 8.5 is a must-have tool for any organization looking to streamline their IT operations and increase efficiency.

Navigating the Waters of Successful Harbor Development

It looks like you have provided a detailed outline for a blog post or article about setting up a registry with Docker and Harbor. Here’s a brief summary of the steps you outlined:

1. Install Docker and Harbor on your system.

2. Create a new registry in Harbor by running the command `harbor registry create `.

3. Generate a certificate signing request (CSR) for the registry using the command `openssl req -new -keyout registry.crt -out registry.csr`.

4. Submit the CSR to a Certificate Authority (CA) to obtain a signed certificate.

5. Create a new Docker image from the registry by running the command `docker build -t / .`.

6. Push the image to the registry using the command `docker push /`.

7. Verify that the image is properly stored in the registry by running the command `docker inspect /`.

8. Test the registry by pulling an image from it using the command `docker pull /`.

9. Finally, you can start using the registry with Docker Compose by adding the registry URL to the `COMPOSE_DOCKER_REGISTRY` environment variable and rebuilding the Docker Compose file.

Overall, your outline provides a comprehensive guide for setting up a registry with Docker and Harbor, including the necessary steps for creating and managing images, as well as testing and verifying the functionality of the registry.