In the vSphere 5 release VMware has added several significant enhancements to ESXi.
NEW Image Builder. A new set of command line utilities allows administrators to create custom ESXi images that include 3rd party components required for specialized hardware, such as drivers and CIM providers. Image Builder can be used to create images suitable for different types of deployment, such as ISO-based installation, PXE-based installation, and Auto Deploy. It is designed as a Power Shell snap-in component and is bundled with PowerCLI.
NEW ESXi Firewall. The ESXi 5.0 management interface is protected by a service-oriented and stateless firewall, which you can configure using the vSphere Client or at the command line with esxcli interfaces. A new firewall engine eliminates the use of iptables and rule sets define port rules for each service. For remote hosts, you can specify the IP addresses or range of IP addresses that are allowed to access each service.
NEW Enhanced SNMP support . ESXi 5.0 expands support for SNMP v.2 with full monitoring for all hardware on the host.
NEW Secure Syslog. ESXi 5.0 adds several enhancements to system message logging. All log messages are now generated by syslog, and messages can now be logged on either local and/or one or more remote log servers. Log messages can be remotely logged using either the Secure Sockets Layer (SSL) or TCP connections. With vSphere 5.0, log messages from different sources can be configured to go into different logs for more convenience. Configuration of message logging can also be accomplished using ESXCLI in addition to the vSphere client.
NEW Central management of host image and configuration via Auto Deploy. Combining the features of host profiles, Image Builder, and PXE, VMware vSphere Auto Deploy simplifies the task of managing ESXi installation and upgrade for hundreds of machines. ESXi host images are centrally stored in the Autodeploy library. New hosts are automatically provisioned based on rules defined by the user. Rebuilding a server to a clean slate is as simple as a reboot. To move between ESXi versions, you update a rule using the Auto Deploy PowerCLI and perform a test compliance and repair operation.
NEW Enhanced Unified CLI Framework. An expanded and enhanced esxcli framework offers a rich set of consistent and extensible commands, including new commands to facilitate on-host troubleshooting and maintenance. The framework allows consistency of authentication, roles, and auditing, using the same methods as other management frameworks such as vCenter Server and PowerCLI. You can use the esxcli framework both remotely as part of vSphere CLI and locally on the ESXi Shell (formerly Tech Support Mode).
New virtual hardware. ESXi 5.0 introduces a new generation of virtual hardware with virtual machine hardware version 8, which includes the following new features:
32-way virtual SMP. ESXi 5.0 supports virtual machines with up to 32 virtual CPUs, which lets you run larger CPU-intensive workloads on the VMware ESXi platform.
1TB virtual machine RAM. You can assign up to 1TB of RAM to ESXi 5.0 virtual machines.
Nonhardware accelerated 3D graphics for Windows Aero support. ESXi 5.0 supports 3D graphics to run Windows Aero and Basic 3D applications in virtual machines.
USB 3.0 device support. ESXi 5.0 features support for USB 3.0 devices in virtual machines with Linux guest operating systems. USB 3.0 devices attached to the client computer running the vSphere Web Client or the vSphere Client can be connected to a virtual machine and accessed within it. USB 3.0 devices connected to the ESXi host are not supported at this time.
UEFI virtual BIOS. Virtual machines running on ESXi 5.0 can boot from and use the Unified Extended Firmware Interface (UEFI).
Other significant capabilities available with ESXi since the 4.1 release: AD Integration. Ability to configure the host to join an Active Directory domain, and any user trying to access the host will automatically be authenticated against the centralized user directory. You can also have local users defined and managed on a host-by-host basis and configured using the vSphere Client, vCLI, or PowerCLI. This second method can be used either in place of, or in addition to, the Active Directory integration.
Scripted Installation. Ability to do a scripted installation of the ESXi software to the local disk of a server. Various deployment methods are supported, including booting the ESXi installer off a CD or over PXE, and accessing the configuration file over the network using a variety of protocols, such as secure HTTP. The configuration file can also specify the following scripts to be executed during the installation:
These scripts run locally on the ESXi host, and can perform various tasks such as configuring the host’s virtual networking and joining it to vCenter Server.
Boot from SAN support for ESXi. This support includes Fibre Channel SAN, as well as iSCSI and FCoE for certain storage adapters that have been qualified for this capability.
New features in VMware vSphere 5.5 (2058665)
Wed, Oct 23rd 2013 3:42p John Willemse New features in VMware vSphere 5.5 (2058665)
VMware vSphere® 5.5 Release Notes Updated on: 14 OCT 2013
VMware vSphere 5.5 introduces many new features and enhancements to further extend the core capabilities in the vSphere platform.
This article provides a summary list of new features and capabilities in vSphere 5.5, including vSphere ESXi Hypervisor, VMware vSphere High Availability (vSphere HA), virtual machines, VMware vCenter Server, storage networking, and vSphere Big Data Exten [read] Keywords: notes
Microsoft Exchange 2013 SCL level configuration
Fri, Sep 20th 2013 2:02p John Willemse Exchange 2013 SCL level configuration
This was simple in Exchange 2013, now its a pain. SCL stands for Spam Confidence Level, with 9 being no doubt 100% a spammy email and 0 being 100% a valid email.
We have 4 SCL commands;
SCL delete threshold – we specify when we delete an email.
SCL reject threshold - we specify when we reject an email into the organization.
SCL quarantine threshold – we specify when we quarantine an email for inspection by an admin.
SCL Junk Emai [read] Keywords: admin
Firewall Sophos UTM 9.104017 Up2Date
Mon, Aug 19th 2013 2:22p John Willemse We just did an upgrade to Sophos UTM v.9.104017, Firmware Up2Date package.
Fixed: DNS server remote DoS vulnerability (CVE-2013-4854)
Fixed: Several issues with RED and Wifi stability
Fixed: Several issues with Web Protection reporting
Fixed: Several issues with IPv6 Prefix Delegation
Fixed: Missing entries in the Japanese Localization
Added: Button to reset UTM ID to be able to use Endpoint Protection on cloned machines
Changed: RED/VPN up/down notificati [read] Keywords: agent