So I came across vCheck by Alan Renouf recently. It is a great utility. He has made it extensible by making plugins available. You can create custom monitoring scripts for any part of vSphere, or infact any other system that you can use Powershell with.
I'm working on adding performance graphs to the utility. I'd like to have both vCenter and NetApp graphs. vCenter Operations manager is nice, but it is a bit clumsy and slow. You can't set defaults, so you have to click through window after window to get where you want.
vCheck has a -config option where you can set the default values for each plugin and the global variables. You can set it up in a scheduled task and have it run at night and e-mail you a daily report.
I've been thinking about a plugin that will know the difference between a daily report and a weekly report and select different plugins for each.
Go check it out. The more we get involved in it, the more we can find other useful plugins for our unique equipment.
Tuesday, July 30, 2013
Monday, January 7, 2013
PowerCLI extremely slow startup
I found that when I open PowerShell ISE and try to run my PowerCLI scripts, there is a HUGE delay in getting the snapin loaded. I don't mean a long delay like a user would say "there's a long delay" I mean like an IT Professional says there is a log delay.
Labels:
5.0,
ESX,
PowerCLI,
Powershell,
Server 2008,
vSphere
Friday, August 17, 2012
How to get the Firmware Version of your hardware
If you are looking to see if the Firmware on your ESXi 5.0 host is upto date, you need to find out what it is right now, so try these commands for the basic items.
vmnic0 00:02:04.00 ACME Up 1000Mbps Full 01:23:45:67:89:AB
vmnic1 00:02:05.00 ACME Up 1000Mbps Full 01:23:45:67:78:AC
Now use the ethtool command to get the info:
For HBAs: Check this link out Get Firmware Version
To obtain the driver version of a Host Bus Adapter on an ESX/ESXi host:
- In ESXi 5.0, run this command:
# esxcli network nic list - or this still works
- You will get something like this:
vmnic0 00:02:04.00 ACME Up 1000Mbps Full 01:23:45:67:89:AB
vmnic1 00:02:05.00 ACME Up 1000Mbps Full 01:23:45:67:78:AC
Now use the ethtool command to get the info:
# ethtool -i vmnic0
driver: ACME
version: 1.2.3a-1vmw
firmware-version: 7.8.9
bus-info: 0000:02:04.00For HBAs: Check this link out Get Firmware Version
- Obtain the driver type that the Host Bus Adapter is currently using:
# esxcfg-scsidevs -a
This will produce an output similar to:
vmhba0 ata_piix link-n/a ide.vmhba0 (0:7.1) Intel Corporation Virtual Machine Chipset
vmhba1 mptspi link-n/a pscsi.vmhba1 (0:16.0) LSI Logic / Symbios Logic LSI Logic Parallel SCSI Controller
vmhba32 ata_piix link-n/a ide.vmhba32 (0:7.1) Intel Corporation Virtual Machine Chipset
Note: The second column shows the driver that is configured for the HBA. - Use the following command to see what driver version is being used:
# vmkload_mod -s HBADriver |grep Version
Taking the the mptspi driver as an example:
# vmkload_mod -s mptspi |grep Version
Version: Version 4.00.37.00.30vmw, Build: 721907, Interface: 9.0, Built on: May 18 2012
From the above output you can see the driver version is 4.00.37.00.30vmw - To check to see what driver is recommended for that card we need to get the VID (Vendor Id), DID (Device Id), SVID (Sub-Vendor Id) and SDID (Sub-Device Id)
# vmkchdev -l |grep vmhba1
000:16.0 1000:0030 15ad:1976 vmkernel vmhba1
In the above cases the VID=1000, DID=0030, SVID=15ad, SDID=1976 - You can now search the VMware Compatibility Guide for VID (Vendor Id), DID (Device Id), SVID (Sub-Vendor Id) and SDID (Sub-Device Id) or in some cases you may need to do a text search here to narrow down the particular card. You can check the version of the ESX/ESXi with following command
# vmware -v
Thursday, August 9, 2012
Prevent Admins from Doing Stuipd Things in vCenter
Role Based Access Controls, or RBAC is very useful in vCenter. I know many of you simply have your own vCenter server, it's only you and you aren't good at sharing. We all have kindergarten issues.
But it the real world you try and fork off as much of your own work on other people in your organization as you can. In this vein, you now have to realize that not everyoen is as smart or careful as you.
RBAC provides a granular role for each set of users. Think of the roles you may have:
- Close Support (Help Desk)
- System Admins
- Application Admins
- SuperUsers
- Root Admins
Close support is your "on the ground" people that have great proceedures that you have written up so that they can fix 75% of the basic problems without escalating to 2nd level tech support. (You did make proceedure guides for all your basic processes, right?) You may want close support to:
- View server status
- View server performance
- Reboot a server
- Power on/off a server
But you probably don't want them changing the number of vCPUs, changing memory, mounting other vmdk file to the server, deleteing the server, or creating a WoW server on your network.
System Admins may be assigned to all VMs at a hardware level. But for data security reasons, you may not want them adding existing disks to a server. They can create new VMs, but maybe only from a template. Creating from a template keep them from allocating too much space, or connecting a VM to the wrong network (Port group/VLAN). Using Templates and Customization Specifications, you can require them to provision new VMs only from templates and ask only for a few items when deploying the template. The rest would be hard coded into the template and the specification.

To do this you need a couple of roles created. We'll call them:
Provisioning
Resource
For CustomizationAccess you will need

Choose Add Permission and select the CustomizationAccess role. Choose the group or groups that you want to have access and add the permission.
Now we have to give that group access to their resources. We will assume the group is called Tech. Assign the role DeployTemplate at the following locations.
- Close Support (Help Desk)
- System Admins
- Application Admins
- SuperUsers
- Root Admins
- View server status
- View server performance
- Reboot a server
- Power on/off a server
To do this you need a couple of roles created. We'll call them:
- CustomizationAccess
- DeployTemplate
- Datastore
- Browse Datastore
- Allocate Space (for vSphere 4.0)
- Virtual Machine
- Configuration
- Add new disk
- Interaction
- Select ALL options
- Inventory
- Create
- Customize
- Deploy Template
- Assign Virtual Machine to Resource Pool
- Virtual machine
- Provisioning
- Modify customization specification
- Read customization specification
Choose Add Permission and select the CustomizationAccess role. Choose the group or groups that you want to have access and add the permission.
Now we have to give that group access to their resources. We will assume the group is called Tech. Assign the role DeployTemplate at the following locations.
- Hosts and Clusters
- Datacenter
- Resource Pool - Tech
- VMs and Templates
- Datacenter
- Folder - Tech
- Datastores
- Datacenter
- Folder - Tech
Pro Tip:
If you have DRS enabled on the cluster, but you have it set to MANUAL, then the VM will NOT be able to be powered up by the Tech Group. It will NOT show an error, it will just silently fail and stay off.Thursday, June 7, 2012
Adding a program to All Users Start Menu in Vista or Server 2008
OK, this is annoying. In 2008, they have moved the All Users Start menu deep into the directory structure.
Look in:
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\
There you will find the various folders that are common to all users. You can create new folders and organized them however you'd like. For things Like Putty or TCPView, simply hold shift and control down to drag a shortcut into the folder of choice. Please, Clean up your descriptions before you leave the folder. Leaving the ".exe - shortcut" after the file name is so Level 1 tech support.
Remember "Only YOU can prevent PEBKAC Errors"
Look in:
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\
There you will find the various folders that are common to all users. You can create new folders and organized them however you'd like. For things Like Putty or TCPView, simply hold shift and control down to drag a shortcut into the folder of choice. Please, Clean up your descriptions before you leave the folder. Leaving the ".exe - shortcut" after the file name is so Level 1 tech support.
Remember "Only YOU can prevent PEBKAC Errors"
Friday, April 20, 2012
NetApp Commands Quick Reference
So I'm going to compile some commands for the NetApp ONTAP 8 controllers. These will be commonly used commands that can help you get online fast, do common tasks, or get some useful information.
disk show
more to come. - Updating over the next few weeks.
disk show
- this has some options that are handy
- -a show only the assigned disks
- -v show all the disks (yea doesn't make sense, a != all)
- you can use wild cards to get only the disks you want like 4d.10.*
- ex. disk show -v 4d.10*
- This assigns disks to the controller. The good and bad part is that you basically just use -n <number> and it assigns a number of disks to the controller, you don't choose it chooses for you. I'm old school, I like control. But you have to learn to let go.
- Now the options for this are not to bad but there are some to be careful of.
- assign -n <number> -- This will assign a number of disks to the controller.
- assign <diskID> -s unowned -- This will UNASSIGN the disk from the controller.
- Checking for wild card capabilities for this.
- remove DO NOT DO THIS UNLESS YOU ARE REMOVING A FAILED DRIVE.
more to come. - Updating over the next few weeks.
NetApp Gotchas
OK, so I think I screwed up this morning. Turns out that when you want to reassign drives on a NetApp FAS3270 running ONTAP 8.0.2. You do NOT use the "drive remove" command. you use
Looking for answers, posting here when I find them.
drive assign 4d.10* -s unownedUsing drive remove puts the drive in a failed status. I can't figure out how to get it OUT of failed status. There is no unfail in ONTAP 8.
Looking for answers, posting here when I find them.
Subscribe to:
Posts (Atom)