Quantcast
Channel: VMware Communities: Message List
Viewing all 223568 articles
Browse latest View live

Re: Upgrade virtual switch distribuido 5.1 a 5.5

$
0
0

Você irá realizar a atualização in-place do vCenter da versão 5.1 para 5.5, ou vai realizar um deploy de um novo vCenter na versão 5.5 e mover os hosts atuais para o novo vCenter?


Re: How to save/roam locally created desktop shortcuts and files

$
0
0

Ha. Found the needle in the haystack. 

Wasn't Profile Unity or Folder Redirection policies but this policy under our default user policy that was set to Enabled:

 

Administrative Templates--Desktop--Prohibit User from manually redirecting Profile Folders

Description:

Prevents users from changing the path to their profile folders.

 

By default, a user can change the location of their individual profile folders like Documents, Music etc. by typing a new path in the Locations tab of the folder's Properties dialog box.

 

If you enable this setting, users are unable to type a new location in the Target box.

 

I changed it to Unconfigured and that allowed UEM Redirection to work. 

Re: Adding a Second Cluster

$
0
0

Hi Perry,

 

You can have a large number of ESXi Servers and a fair number of VMware Clusters under a single vCenter Server.  I will admit, it has been a while since I installed View and whilst iirc, view composer -> vCenter is 1:1 does it need to be a dedicated vCenter Server for anything else you have? Are you not only doubling but splitting it into 2 View environments?

 

Assuming all hosts are identical configuration (and this should be a pre-req), I personally would create a new Cluster with the new host.  Then put one of the 5 hosts into maintenance mode to evacuate the VMs, disconnect it and re-connect back to the vCenter Server in the new cluster (then you would have 4 in one and 2 in the new cluster) and then complete same exercise again to balance it out in 3-3.

 

Will the new cluster have different storage presentation or are they all going to see the same storage?

 

What is the perceived benefit of have two clusters in the first place?  By reducing the amount of servers in the cluster to 3 you potentially reduce the capacity to fail. Two 3 node clusters (at lets assume n+1) could have less capacity than a 6 node (5+1) cluster depending on how you are doing HA (obviously that high level and it depends on how you configure HA)

 

Chris

Re: "Error in creating a new entry for __MACHINE_CERT in VECS Store MACHINE_SSL_CERT."

$
0
0

Hi

 

We are having the same issue. Did you ever manage to find a solution?

 

Mike

Re: Unable to reserve memory

Re: Adding and accessing additional files to the plugin.zip file

$
0
0

The way we have been speced out to function is to minimize user interactions to setup the initial configuration of our storage system with out plugin.   The first time the plugin is brought up and entered, it should auto configure and all the storage systems/parameters should be available in our plugin.  Thus having a special setup step would not fit that requirement.  The team doing the setup also just wants the webserver to serve up the zip file and shut down the server once the zip file has been offloaded by VCenter.

The idea for doing this is to stick a configuration XML file into our plugin zip file.  When our plugin gets unpacked on the vcenter server and our plugin is started up, we load up the XML file (located in /etc/vmware/vsphere-client/vc-packages/vsphere-client-serenity/<our plugin dir> on a linux system or approptriate locaction for windows) and then remove it.  This solution is working although it leaves us with the potential burden of tracking in future VCenter releases if the plugin unpack directory changes.  It would be nice if there was some kind of environment variable or some other mechaism that indicated the location of that vsphere-client-serenity directory similar to the $VMWARE_DATA_DIR setting. 

Another mechanism I explored (and coded) was putting a URL to the XML file into the plugin's registration records in the ExtExtendedProductInfo.ProductUrl field.  But that wouldn't fly with the teams desire to only serve up the plugin zip file.

NSX SSL VPN-Plus

$
0
0

I've configured the SSL VPN. I'm able to connect externally, install the ssl client, authenticate and connect. Problem is that although I've defined the vxlan networks in the SSL VPN-Plus Private Networks section, I'm not able to connect in any way to any vm in those networks. I've made sure all firewalls are disabled and still no go. I'm able to successfully ping/tracert to the ssl-vpn default gateway, but nothing is reachable past the default gateway.

Not sure what I'm missing.

Re: List Portgroups with Private VLANS

$
0
0

Hi Luc,

 

I was actually able to export to CSV the just delete the host column so its ok, the other this is it didn't actually filter out only PvLAN and listed or VDS portgroups so i added this to the end which seems to work well

 

?{$_.VLANType -like "PvLAN"} | Export-Csv -NoTypeInformation -UseCulture  c:\scripts\pvlan-vm.csv

 

The only think I wold like is to list VM's a little better but it will certainly do the job, thank you again for your help, much appreciated.

 

Cheers


Re: 2要素認証

$
0
0

gowatanagowatanaさん


こんにちは、

 

参考になりました。

お陰様でやりたいことができました。

 

ありがとうございました。

Re: How to refresh navigator content

$
0
0

OK, let me clarify: you only need to use sendModelChangeEvent() in that polling use case where your UI code is detecting the change itself.  In the normal use case where you call an action on the server side which returns immediately you must use the ActionResult class to let the vSphere Client what changed: it will take care of updating the model.  That's how it works in the ChassisA and ChassisB samples, see for instance

samples/chassisA-service/src/main/java/com/vmware/samples/chassisa/mvc/ActionResult.java

 

Hope this helps!

Re: What is the equivalent command "clear ip ospf process" in DLR and ESG?

$
0
0

There is option to clear IP OSPF neigh as shown below.

You need to go to enable mode.

 

FAILED:A general system error occurred:Network error.Host 172.21.129.70 key can't be retrieved.(return code 2)

$
0
0

P2V迁移,物理机是suse11的系统,带桌面中文版的,关于这个问题,也看了下其他帖子,但是说的不是很明白,加上对于linux系统的不熟悉,还麻烦知道的人,能给予一定的帮助,如果涉及到命令,麻烦尽情的详细   谢谢

Re: FAILED:A general system error occurred:Network error.Host 172.21.129.70 key can't be retrieved.(return code 2)

$
0
0

用的是 VMware vCenter Converter Standalone进行操作的,网络都是通的  不过是通过了几层交换机,全都是内网环境  没有dns

vsphere 6 restart order

$
0
0

what is the correct order of start of vsphere 6.x in this scenario of:

 

. external DB (like SQL)

. external PSC

. vcenter

 

to restart or bring the environment online, what is the correct order:

 

1: DB     2: PSC  3: vCenter

 

or

 

1: DB  2: vCenter 3:PSC

Re: How to replace default certificate for Secure Boot Virtual Machine?

$
0
0

Hi Sam,

 

Thanks for your reply. However I am not able to access that URL.

Does it need special permission?

 

Screen Shot 2017-02-17 at 10.32.23 AM.png


Is it possible to delete an STS Signing Chain from SSO?

$
0
0

Hi all,

 

I have an external vCenter 6.0 u2 appliance connected to an external 6.0 u2 PSC appliance.

 

In the past some other PSCs have been used but then they were decommissioned and deleted and the vCenter was pointed to a newer PSC.

 

When I look in the Certificates > STS Signing tab of the SSO configuration, I see multiple STS Signing Certificates listed.

Some of the certificate chains are related to the old/deleted PSCs.

 

I have tried to highlight the redundant certificate chain and then use the option Remove from the Web Client console however I get an error that the removal did not succeed.

 

I believe these older chains relating to the now non-existent PSCs are not affecting anything however, for the sake of having a cleaner console, I have the following questions:

 

1) Is there a way to remove them from the console/SSO?

2) Should I need to worry about removing them or can I just leave them and nothing will be affected?

3) Why would I be unable to remove them from the console using the button that is given to do precisely that?

 

Thanks in advance

Mark

Re: Undocumented classes in vRO API

$
0
0

It is used by vCACCAFECatalogResourceRequest class in vRO API, shown as below. So that I do not know how to use these methods.

vmware community.jpg

Re: How to replace default certificate for Secure Boot Virtual Machine?

$
0
0

That was posted on the beta forums; that's possibly why. Reposted the reply for you.


Custom Secure Boot configuration while deploying a new Virtual Machine

 

The Secure Boot configuration is stored in NVRAM.  If the NVRAM contains no Secure Boot configuration (a freshly deployed VM, or a VM for which the .nvram file has been deleted from the datastore), the Secure Boot configuration will be reset to the defaults described in the UEFI Specification (the variables named PKDefault, KEKDefault, dbDefault and dbxDefault).  You can use advanced VM config options to control those defaults, through which you can pre-populate the Secure Boot configuration before the VM is first powered on.


If you want to deploy the certificates as part of the VM's configuration, copy the DER-encoded certificate into the VM's directory and add the following advanced VM config options:

 

   uefi.secureBoot.dbDefault.file0 = "custom-cert.der"

 

where "custom-cert.der" is the name of the DER-encoded certificate file within the VM's directory.  You can repeat that for file1, file2, file3, etc., to add multiple certificates.

 

If you want to pre-configure SHA-256 hashes into the Secure Boot approved database (db) or revoked database (dbx), put a hexadecimal representation of the file's Authenticode hash (note: this is not the regular SHA-256 sum over the whole file) into an advanced VM config option like this:

 

   uefi.secureBoot.dbDefault.value0 = "01ba4719c80b6fe911b091a7c05124b64eeece964e09c058ef8f9805daca546b"

 

If you want to replace the default certs so that only your custom certs, also add:

 

   uefi.secureBoot.dbDefault.append = "FALSE"

 

which will remove the default certs before starting to add your custom certs.  By default, your custom certificates will be appended to the default set of custom certificates.

 

Modifying the Secure Boot configuration of an existing Virtual Machine

By default, the virtual machine's configuration cannot be modified from within the virtual machine.  If you use the technique described above to install your own Platform Key into the PK variable or to provision your own certificate into the Key Exchange Key database in the KEK variable, you can modify Secure Boot configuration from within the virtual machine by using the corresponding private keys, as described in the UEFI Specification.  Discussion of how to prepare and correctly authenticate a modification to the virtual machine's Secure Boot configuration is beyond the scope of this document.

 

If you wish to manually modify a virtual machine's Secure Boot configuration, you can enable the use of the firmware's user interface for managing Secure Boot configuration using the following advanced VM config option:

 

   uefi.allowAuthBypass = "TRUE"

 

Power on the virtual machine to its firmware user interface.  You can achieve this by pressing the "Esc" key at the virtual machine's console while the "VMware" logo is displayed -- Set bios.bootDelay = "10000" if you need more time to do that.  Or, just set bios.forceSetupOnce = "TRUE" to force the firmware's user interface to appear on the next boot.

 

At the firmware user interface, choose Enter setup, then a Secure Boot Configuration menu will be present to allow for manipulation of the Secure Boot configuration.

 

For reasons of platform integrity, the Secure Boot configuration menu will only be available if the uefi.allowAuthBypass option is set and when the virtual machine has not made any attempt to boot an operating system since it was powered on.

Re: Windows 7 Aero doesn't works

Re: Undocumented classes in vRO API

$
0
0

Yeah, I think so, but I have tried to treat it as Properties object, failed, I can not get attribute keys of the Properties object.

And I also tried System.log(yourObject.toSource()), the output is ({}) @ 

Viewing all 223568 articles
Browse latest View live




Latest Images