Sunday, August 16, 2009

VMWare Workstation NAT problems in Windows 7

I learned from a co-worker this weekend that they were having trouble running VMWare Workstation VMs in NAT mode on the new release of Windows 7. It appears that this is fixed in the latest beta version of VMWare Workstation but until it reaches full release there seems to be a work around. I haven't tried this yet but I've read a lot of positive responses.


1. Run the Virtual Network Editor as Administrator (Use RunAS or right click and Run as Administrator on vmnetcfg.exe)
2. Goto Host Virtual Adapters and remove all VMNet instances (VMNet1 and VMNet8 typically).
3. Click Apply.
4. Add New and Assign it the new adapter to VMnet1.
5. Click Apply.
6. Select the Host Virtual Networking tab.
7. Click the > next to VMnet1 and change the address and subnet to the ICS network (192.168.37.0 / 255.255.255.0)
8. Click Apply.
9. Go to the NAT tab and select VMNet1.
10. Click Edit and change the Gateway to the ICS gateway IP (192.168.37.1)
11. Click Apply and restart the NAT service. (Counter-intuitive, I know.)
12. Go to the DHCP tab.
13. Add VMNet1 and remove all others.
14. Click Apply.
15. Select Properties of VMNet1 in DHCP Tab.
16. Enter a Start and End Address for DHCP Scope (192.168.37.50 to 192.168.37.75 as an example)
17. Adjust client lease to a few days to avoid potential DHCP client renewal timeouts.
18. Click OK / Click Apply.
19. Select Host Only Networking for every VM that needs NAT out to your host network/internet.
20. Enable ICS (Internet Connection Sharing) on the W7 Host network card that provides connectivity. Select VMNet1 as the network card that needs access.


This thread explains the issue in more detail:

http://communities.vmware.com/message/1309197

Sunday, August 9, 2009

Some more info on VMware Data Recovery

There's been a lot of talk about using VMware Data Recovery with ESX 4 and vSphere and what it does and doesn't do. We'll get the negatives out of the way first. vDR isn't a VCB replacement so if you still need a VCB proxy in your environment that will still need to be maintained. vDR doesn't write directly to tape. vDR's de-dupe technology is target based.. Therefore, you will experience disk space savings but all those redundant blocks will still be sent over the network.

Okay, now that we have some of the obvious negatives out of the way, let's talk about why vDR is really awesome. It comes as a virtual appliance so there's nothing to build or configure as far as the device goes. There's also a plugin that install directly into vSphere and your backups can be managed by the vSphere client (no 3rd party apps required!). There are many more cool features and there's also an experimental plugin that will allow you to perform file level restores from windows VMs.

vDR vs. Veeam and detailed install instructions



Here is a link that lists a vdr and veeam comparison as well as install instructions with screenshots:

http://searchstorage.techtarget.com.au/articles/34373-How-to-install-and-operate-VMware-Data-Recovery-Manager

Install and Configure Video



Here is the first part of an installation video. This is pretty cool and shows the different interfaces.

http://www.dabcc.com/media.aspx?id=505

Sunday, July 26, 2009

vCenter Lifecycle Manager

OK, so this topic has already been covered in the Varrow Blogs, mostly on Calfo's Blog. I want to bring it up again, however, because I keep seeing environments that stand to benefit greatly by putting this or a similar technology into place in their ESX environment.

There's no argument that VMware makes things easier for your IT Department but could it be argued that it makes things a little too easy? Now that you can have a new windows or linux guest up, running, and configured in minutes rather than hours everyone wants part of the action, right???

Of course they do and why would you blame them? Most administrators try manage provisioning tasks manually and quickly get overwhelmed. Ed, the exchange admin, had you create him a test server last month. Is Ed done testing now? Can you shutdown Ed's VM and free up some much needed resources? We can ask Ed, but oh yeah.. that's right, Ed's on vacation for a couple of weeks. Will we forget to ask him when he gets back?

You get the picture. It can get really nasty trying to keep up with everyone and every project that requires use of your ESX infrastructure. For this reason and after some recommendations from coworkers I started looking into VMware's vCenter Lifecycle Manager. It appears that it will give IT the ability to automate much of the lifecycle process and hooks right into vCenter 2.x. I'm hoping to evaluate it in depth soon but you can check it out on VMware's page here:

https://www.vmware.com/products/lcm/

And check out Calfo's demo video he posted at the beginning of the year.

http://calfo.wordpress.com/2009/01/11/vmware-lifecycle-manager-demo-video/

Sunday, July 19, 2009

Unregistered hosts with CLARiiON iSCSI

I ran into an issue recently where I was unable to register w2k8 hosts in Navisphere completely with the naviagent. The host would communicate with Navisphere and autoregister the iqns but the host itself would show a "U" (unregistered) status. Also, Navisphere would now show host info such as drive mappings etc... I spent a lot of time going over settings and rechecking configurations. It was really bizarre and an issue I had never encountered in the Fiber Channel environment. After working with EMC support, the solution finally came out. When using iSCSI on Windows servers to connect to a CLARiiON iSCSI storage system, the iSCSI NICs on the hosts cannot be the first bound NIC.

This solution is elaborated upon in the EMC solution emc191748.

You can check the binding order in a number of ways.

Use the netsh interface
  1. Go to "Network and Dial-up Connections." (For Windows 2008, select "Manage Network Connections.")
  2. From the toolbar select Advanced/Advanced Settings.
  3. In the "Adapters and Bindings" tab, ensure that the NIC used for normal, non-iSCSI traffic is at the top of the list, followed by the iSCSI NICs.
  4. If you need to change this order, a reboot is required or you can use the follow two commands to turn off/on each NIC.

    To disable:

    netsh interface set interface <interface name> DISABLED


    To re-enable:

    netsh interface set interface <interface name> ENABLED

    Run these two commands for each NIC.

Use the ipconfig/all command

You can use the ipconfig/all command from a command prompt. For Windows 2000 and 2003, the NICs will display in reverse order, that is, the first NIC listed is the lowest NIC in the binding order. For Windows 2008, the order of the NICs will follow the correct sequence, that is, the first NIC listed will be the NIC bound.

Using netstat-rn command

For Windows 2008 servers you can use the netstat-rn command.

The numbers listed in the left column reflect the binding order with the lowest number being the first NIC bound. For Windows 2000 and 2003, it is the opposite.

C:\Users\Administrator>netstat -rn
===================================================================
Interface List
10 ...00 14 22 b1 7b ae .........Intel(R) PRO/1000 MB Dual Port Server Connection* (See note below.)
11 ...00 14 22 b1 7b af ...... ...Intel(R) PRO/1000 MB Dual Port Server Connection #2** (See note below.)

1 ................................... Software Loopback Interface 1*** (See note below.)

12 ...02 00 54 55 4e 01 ......... Teredo Tunneling Pseudo-Interface
13 ...00 00 00 00 00 00 00 e0 isatap.{14388A07-03E6-48AE-A713-D835413A72A5}
14 ...00 00 00 00 00 00 00 e0 6TO4 Adapter
16 ...00 00 00 00 00 00 00 e0 isatap.{6838E21C-4151-41EB-89E6-7C005E8E58A2}

* Second bound NIC. This is the first, real NIC. It does show up in the GUI.

** Third bound NIC. This is the second, real NIC. It does show up in the GUI.

*** First bound NIC. This is the localhost and will not show up in the GUI list above.



Note See solution emc159428.

Sunday, July 12, 2009

Adding a Backup URL into Citrix Web Interface

Creating a backup URL is one of several strategies that exist for designing a redundant Web Interface in your XenApp farm if you are using the XA plugin for hosted apps (PN Agent). There is always the option of creating multiple Web Interface servers and using load balancing appliances. There is also the option of using a round robin approach with DNS (poor man's load balancing). However, using appliances may be "over the top" in an environment without heavy utilization and the DNS approach isn't intelligent enough to detect a failed server and would require manual removal of the failed server entry.

Adding a backup URL to Web Interface for your hosted plugin allows a seamless failover to a second site. The process starts by specifying the backup URL into the Web Interface configuration. After that, the URL is pushed out to all of the hosted apps plugins upon their next successful connection. In the event that your primary Web Interface fails, the hosted apps plugin will detect the failure and automatically attempt to connect with backup web interface server specified in the backup URL configuration. Instructions on how to add the backup site can be found here:

http://support.citrix.com/proddocs/index.jsp?topic=/web-interface/wi-specify-backup-urls.html

Sunday, July 5, 2009

Enhanced VMotion

EVC (Enhanced VMotion Compatibility) is a feature in ESX Clusters that allows you to VMotion among different processors of the same family. To enable this feature, you need to start with a new cluster and add your hosts in after verifying they have the correct settings turned on in the BIOS.

It's common practice to turn Virtualization on in the advanced CPU settings before building a new host. On some hosts, such as HP, the "No Execute" (also referred to as NX or XD) bit needs to be enabled in the BIOS as well.

There's a lot of potential for using EVC between hosts of the same processor family. Following are some great links with more detail about EVC, its use cases, and some intel compatibility specifications.

http://www.itworld.com/virtualization/56292/understanding-vmware-evc

http://www.vmguru.nl/wordpress/2009/06/vmware-evc-cluster-what-is-that/

http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=1991

Sunday, June 28, 2009

Install issues combining Citrix Web Interface and other products on x64.

Often times when setting up Citrix environments outside of production, it makes sense to combine multiple pieces onto one server. After recently setting up XenDesktop using an x64 environment, there was an unexpected issue trying to combine the XenDesktop DDC, Web Interface, and the Licensing Management Console. This combination has never been a problem in a 32-bit environment so what could be different in x64? The answer... IIS

It was all very confusing at first because the License Server installation happened at the very beginning and worked without a hitch. Licenses were added and then DDS was installed on the same machine. The complete desktop environment was built without encountering any problems until time to configure Web Interface. At that point, no web pages on that machine were accessible, not even the Licensing Management Console which had worked fine previously. After some research, the cause of the problem was found along with the solution midway through the release notes for Presentation Server 4.5 with Feature Pack 1 which can be found here:

http://support.citrix.com/article/CTX112222

The DDC behaves a lot like XenApp and the same information regarding x64 applies. Quoting from the release notes found above, Citrix points out that "On a 64-bit version of Windows, the Citrix Web Interface installation will enable 32-bit Web extension support in IIS and this will disable 64-bit extension support."

And the solution.... Install Web Interface FIRST.


Still quoting from the above article "Due to this requirement, if you are installing the Web Interface on a 64-bit version of the Windows operating system, ensure that you install Web Interface prior to installing any other Citrix software, including Citrix Presentation Server and Citrix License Management Console. This particular order of installation allows the products to adapt to the 32-bit support in IIS. If you install these products in an incorrect order, the Web server may produce errors messages when it is accessed, such as “Service unavailable.”

So, uninstall and reinstall making sure to do Web Interface first. This will prep IIS for all the subsequent pieces.