In the vSphere 5 release VMware has added several significant enhancements to ESXi.
NEW Image Builder. A new set of command line utilities allows administrators to create custom ESXi images that include 3rd party components required for specialized hardware, such as drivers and CIM providers. Image Builder can be used to create images suitable for different types of deployment, such as ISO-based installation, PXE-based installation, and Auto Deploy. It is designed as a Power Shell snap-in component and is bundled with PowerCLI.
NEW ESXi Firewall. The ESXi 5.0 management interface is protected by a service-oriented and stateless firewall, which you can configure using the vSphere Client or at the command line with esxcli interfaces. A new firewall engine eliminates the use of iptables and rule sets define port rules for each service. For remote hosts, you can specify the IP addresses or range of IP addresses that are allowed to access each service.
NEW Enhanced SNMP support . ESXi 5.0 expands support for SNMP v.2 with full monitoring for all hardware on the host.
NEW Secure Syslog. ESXi 5.0 adds several enhancements to system message logging. All log messages are now generated by syslog, and messages can now be logged on either local and/or one or more remote log servers. Log messages can be remotely logged using either the Secure Sockets Layer (SSL) or TCP connections. With vSphere 5.0, log messages from different sources can be configured to go into different logs for more convenience. Configuration of message logging can also be accomplished using ESXCLI in addition to the vSphere client.
NEW Central management of host image and configuration via Auto Deploy. Combining the features of host profiles, Image Builder, and PXE, VMware vSphere Auto Deploy simplifies the task of managing ESXi installation and upgrade for hundreds of machines. ESXi host images are centrally stored in the Autodeploy library. New hosts are automatically provisioned based on rules defined by the user. Rebuilding a server to a clean slate is as simple as a reboot. To move between ESXi versions, you update a rule using the Auto Deploy PowerCLI and perform a test compliance and repair operation.
NEW Enhanced Unified CLI Framework. An expanded and enhanced esxcli framework offers a rich set of consistent and extensible commands, including new commands to facilitate on-host troubleshooting and maintenance. The framework allows consistency of authentication, roles, and auditing, using the same methods as other management frameworks such as vCenter Server and PowerCLI. You can use the esxcli framework both remotely as part of vSphere CLI and locally on the ESXi Shell (formerly Tech Support Mode).
New virtual hardware. ESXi 5.0 introduces a new generation of virtual hardware with virtual machine hardware version 8, which includes the following new features:
32-way virtual SMP. ESXi 5.0 supports virtual machines with up to 32 virtual CPUs, which lets you run larger CPU-intensive workloads on the VMware ESXi platform.
1TB virtual machine RAM. You can assign up to 1TB of RAM to ESXi 5.0 virtual machines.
Nonhardware accelerated 3D graphics for Windows Aero support. ESXi 5.0 supports 3D graphics to run Windows Aero and Basic 3D applications in virtual machines.
USB 3.0 device support. ESXi 5.0 features support for USB 3.0 devices in virtual machines with Linux guest operating systems. USB 3.0 devices attached to the client computer running the vSphere Web Client or the vSphere Client can be connected to a virtual machine and accessed within it. USB 3.0 devices connected to the ESXi host are not supported at this time.
UEFI virtual BIOS. Virtual machines running on ESXi 5.0 can boot from and use the Unified Extended Firmware Interface (UEFI).
Other significant capabilities available with ESXi since the 4.1 release: AD Integration. Ability to configure the host to join an Active Directory domain, and any user trying to access the host will automatically be authenticated against the centralized user directory. You can also have local users defined and managed on a host-by-host basis and configured using the vSphere Client, vCLI, or PowerCLI. This second method can be used either in place of, or in addition to, the Active Directory integration.
Scripted Installation. Ability to do a scripted installation of the ESXi software to the local disk of a server. Various deployment methods are supported, including booting the ESXi installer off a CD or over PXE, and accessing the configuration file over the network using a variety of protocols, such as secure HTTP. The configuration file can also specify the following scripts to be executed during the installation:
These scripts run locally on the ESXi host, and can perform various tasks such as configuring the host’s virtual networking and joining it to vCenter Server.
Boot from SAN support for ESXi. This support includes Fibre Channel SAN, as well as iSCSI and FCoE for certain storage adapters that have been qualified for this capability.
Heartbleed Security Bug fixes for VMware
Sun, Apr 20th 2014 5:05a John Willemse 19 April, 2014.
It seems to be patch Saturday as today a whole bunch of updates of products were released. All of these updates relate to the heartbleed security bug fix. There is no point in listing every single product as I assume you all know the VMware download page by now, but I do want to link the most commonly used for your convenience:
VMware vCenter Server 5.5 U1a
VCVA 5.5 U1a
VMware vCenter Server 5.5c
ESXi KB:VMware ESXi 5.5, Patch ESXi550-201404420-SG
ESXi KB:VMware E [read] Keywords: blogSphere
Sophos UTM Up2Date 9.201023 package
Thu, Apr 10th 2014 4:46p John Willemse We just did the upgrade.
System Version: Sophos UTM 9.200-11
Official 9.2 GA Release - update from 9.200. Fix: OpenSSL vulnerability: TLS heartbeat read overrun (CVE-2014-0160)
Fix : vpn site2site overwiev is missing ipsec respondOnly connections
Fix : Object Changelog PopUp can not be closed in IE9
Fix : [BETA] RED50 reconnects all the time
Fix [29419&rsq [read] Keywords: agent
CentOS alert RHSA-2014-0328. Kernel Update.
Thu, Apr 3rd 2014 12:25p John Willemse We just upgraded OTAP to Centos 6.5 Kernel 2.6.32-431.11.2.el6.x86_64 x86_64
Updated kernel packages that fix multiple security issues and several bugs are now available for Red Hat Enterprise Linux 6.
The Red Hat Security Response Team has rated this update as having Important security impact. Common Vulnerability Scoring System (CVSS) base scores, which give detailed severity ratings, are available for each vulnerability from the CVE links in the References section.
The kern [read] Keywords: notes
Technisch consultant. Per direct beschikbaar in de regio Zuid-Holland.
Sat, Mar 8th 2014 6:05p John Willemse Mijn ambities:
Prospects technisch adviseren
Producten kunnen implementeren bij klanten
Telefonisch en on-site technisch support leveren
Functie ongeveer 40% binnen en 60% buiten
Naast mijn werkwijze die inventief en creatief is in het vinden van oplossingen neem ik ook een dosis kennis mee die ingezet kan worden om de kantoorautomatisering zoals (hard- en software) migratie- en upgrades te waarborgen in project vorm.
Competenties en vaardigheden:
Service en ondersteuning
Coör [read] Keywords: blogSphere