vCenter Server 8.0a zawiera nowe funkcje i poprawki dla VMware vSphere z Tanzu i vCenter Server. Ta aktualizacja jest jednocześnie łatką dla podatności CVE-2021-22048. Aktualizacja rozwiązała problem który powodował trudności z synchronizacją bibliotek chronionych hasłem oraz inny problem związany z tworzeniem systemów load balancingowych jak i poprawną pracą klastra. Po więcej informacji zapraszam do dalszej części artykułu.
Patch for VMware vCenter Server Appliance 8.0a
Product Patch for vCenter Server containing VMware software fixes, security fixes, and third-party product fixes.
This patch is applicable to vCenter Server.
Download Filename | VMware-vCenter-Server-Appliance-8.0.0.10100-20920323-patch-FP.iso |
Build | 20920323 |
Download Size | 6402.2 MB |
sha256checksum | 80291814a109b1e1c538c307e19268d3e13a49f0566a44ea1249552b70f67bc4 |
Download and Installation
To download this patch from VMware Customer Connect, you must navigate to Products and Accounts > Product Patches. From the Select a Product drop-down menu, select VC and from the Select a Version drop-down menu, select 8.0.0.
- Attach the
VMware-vCenter-Server-Appliance-8.0.0.10100-20920323-patch-FP.iso
file
to the vCenter Server CD or DVD drive. - Log in to the appliance shell as a user with super administrative privileges (for example, root) and run the following commands:
- To stage the ISO:
software-packages stage --iso
- To see the staged content:
software-packages list --staged
- To install the staged rpms:
software-packages install --staged
- To stage the ISO:
Rozwiązane problemy:
- Security Issues
- After upgrade to vCenter Server 8.0, synchronization of password-protected subscribed content libraries might fail After upgrade to vCenter Server 8.0, synchronization of password-protected subscribed content libraries might fail due to missing security key details. In the logs, you see an error such as:
javax.crypto.BadPaddingException: Error finalising cipher data: pad block corrupted
.This issue is resolved in this release.
- After upgrade to vCenter Server 8.0, synchronization of password-protected subscribed content libraries might fail After upgrade to vCenter Server 8.0, synchronization of password-protected subscribed content libraries might fail due to missing security key details. In the logs, you see an error such as:
- Networking Issues
- LoadBalancers and Guest Clusters are not created when two SE Groups exist on NSX-ALB
If a second SE Group is added to NSX-ALB with or without SEs or virtual services assigned to it, the creation of new supervisor or guest clusters fails, and existing supervisor clusters cannot be upgraded. The virtual service creation on NSX-ALB controller fails with the following error:
get() returned more than one ServiceEngineGroup – it returned 2
As a result, new load balancers are unusable and you cannot create new workload clusters successfully.
For more information, see the VMware Knowledge Base article 90386.
This issue is resolved in this release.
- LoadBalancers and Guest Clusters are not created when two SE Groups exist on NSX-ALB
Znane problemy:
Installation and Upgrade Issues
- vCenter Server update fails with error for failed load of repository manifest data If you set up a custom repository that has authentication and self-signed certificates that vCenter Server does not trust, updates and upgrades to vCenter Server 8.0 and later might fail. In the vSphere Client, you see an error such as
Failed to load the repository manifest data for the configured upgrade
after the upgrade precheck completes.Workaround: See VMware knowledge base article 90259. - Miscellaneous Issues
-
- You cannot revert configuration changes for the vmware-rbd-watchdog service When you use the TLS Configuration utility to revert configuration changes, the vmware-rbd-watchdog service does not restore back to the expected TLS protocols.Workaround: Use the argument
-s <service-name>
to individually call the rbd service, for example:root@sc1-10-168-175-98 [ /usr/lib/vmware-TlsReconfigurator/VcTlsReconfigurator ]# ./reconfigureVc restore -d /tmp/20221124T100959 -s vmware-rbd-watchdog
- You cannot revert configuration changes for the vmware-rbd-watchdog service When you use the TLS Configuration utility to revert configuration changes, the vmware-rbd-watchdog service does not restore back to the expected TLS protocols.Workaround: Use the argument
Notatki producenta: VMware vCenter Server 8.0a
Pozdrawiamy,
Zespół B&B
Bezpieczeństwo w biznesie