Get guidance, share wins, and ensure smooth Nutanix deployments.
Recently active
Hi all, A network security audit on a customer infrastructure reported a vulnerability on the cerebro http (port 2020) who is open on http in every CVM and without any security prompt.Some sensitives informations are visible : - AOS version : el7.3-release-euphrates-5.10.7-stable-... - VM Names - Protection Domain names - Witness ip address - ... Is there’s a way to secure this component ?
Hi, As per title i am wondering about encryption when we are using ESXi hosts and Nutanix together. We would like to encrypt the VM's and maybe Data-At-Rest encryption. We have currently 3 nodes in a block with 3 ESXi hosts and i wonder what the best practice is about encryption? Is it possible to encrypt the data both via Nutanix and vmwar software/KMS? Is it possible to encrypt only the VM's via VMware encpryption method and use the KMS directly via VMware or should i use the prism management? Does it matter in a Nutanix way if you choose to set up the KMS and encrypt the Data from the vSphere instead of doing it in the Prism mangement? Thank you in advance.
Hi In my previous publication, publish version v1.2. (https://next.nutanix.com/scripts-32/nutanix-tools-for-ahv-v1-2-32075) It was updated to v1.3 and it already extracts new information. The status of the NGT TOOLS, description, etc. and many new key validators to avoid problems. Additional I add a small script to obtain the information of the connection of the cluster to the TOR switch and the physical ports. Please check the github for more information. https://github.com/dlira2/Nutanix-tools-for-AHV I use the script in large accounts with more than 1000VMs and it works optimally.
Hi, I got a question during the test. Window VMs(C: drive) , linux VMs(df -h) capacity different those capacity in the prism(VM-table). Not all VMs are like this, only a few are like this. These VMs erased a lot of data and got a lot of capacity. The Curator has since been executed, but the capacity has not decreased inf prism-vm-table. Why can't Prism return a VM's erased data capacity value? How do I get Prism to read this capacity? Window -> Server 2016 Linux -> Centos 7.X Thank you.
Hi This is my first blog entry and therefore I would like to introduce myself briefly. My name is Omero Muscio, I have been working at Amanox Solutions in Switzerland as Presales Engineer for a little more than half a year. This means that I mainly take care of the customers' technical concerns, create sizings, carry out PoCs and go to the customer to carry out post-sales activities. How-To Cancel Stuck Move Migration Plan: With Nutanix Move 3.3.1, we had the error twice at our customer's site that the migration plan did not fail after manual abort, but hung up. With the help of Nutanix Support, we were able to quickly find a solution to this problem. Log in to the AHV VM via SSH or in the console. Username: admin PW: nutanix/4u enter rs,this is similar to sudo or su From now on you are logged in as root@move. Now we connect to the Postgre database: postgres-shell to open the PG-Shell psql -d datamover to get into the corresponding PSQL shell With the help of the command select mpuui
There is an ever-increasing chance that the next time you will need to add a node to the cluster or build a brand new cluster using new nodes – they will be bare metal nodes. What that means is that there is neither AHV nor CVM pre-installed on the node (unlike with factory imaged nodes). The process of imaging differs slightly from handling a factory imaged nodes hence this post. Bare metal nodes might come with a Discovery OS - small footprint software which allows for the node to be discovered by AOS 5.11 and later and thus imaged by an existing cluster CVM. When building a new cluster standalone (bare metal) imaging is performed from a workstation with access to the IPMI interfaces of the nodes in the cluster. Imaging a cluster in the field requires first installing certain tools on the workstation and then setting the environment to run those tools. This includes setting up Foundation VM and uploading Nutanix software images to the Foundation VM. Now follow the guide and let the i
Hi all, did you guys know that AHV to ESXi conversion is only possible from Prism (Convert cluster option) if the cluster was earlier Esxi converted to AHV and being converted back to ESXi. AHV to ESXi conversion is not supported from the Prism. Some pre- requisites for converting AHV to ESXi via prism are-https://portal.nutanix.com/#/page/docs/details?targetId=Web-Console-Guide-Prism-v55:man-cluster-conversion-requirements-limitations-r.html#nref_amd_hlp_k5 However one could always re-image an AHV node to ESXi manually. Before converting the cluster, customer should always migrate the running vms on the AHV cluster to their DR cluster. This can be done using Protection Domains. More information on Protection Domains can be found below: https://portal.nutanix.com/#/page/docs/details?targetId=Prism-Element-Data-Protection-Guide-v511:Prism-Element-Data-Protection-Guide-v511 or also refer KB-3059 https://portal.nutanix.com/#/page/kbs/details?targetId=kA03200000098T7CAI Once cluster is c
Hi I want to monitor our Nutanix environment by Nagios XI. Is there a neat guide on how to do this? Thanks Jeru
Nowadays everyone is concerned about the security of their infrastructure as they should be. The Nutanix document referenced below contains an overview of the security development life cycle (SecDL) and host of security features supported by Nutanix. It also demonstrates how Nutanix complies with security regulations to streamline infrastructure security management. In addition to this, this guide addresses the technical requirements that are site specific or compliance-standards (that should be adhered), which are not enabled by default. https://portal.nutanix.com/#/page/docs/details?targetId=Nutanix-Security-Guide-v510:Nutanix-Security-Guide-v510
Hi there, i need some help with my Dell OptiPlex Micro Cluster. I wanted to build up a four node cluster but everytime i try to install the Nutanix CE, right at the finish line it says: “Waiting for the Nutanix Controller VM to start up………...…” followed by: “A Problem was encountered. Please review the contents of /home/install/firstboot.out for details, and refer to the documentation or the Nutanix NEXT community for next steps. Press <Enter> to return to the login prompt.” Now if i restart the installation and try to repair the CVM this error appears: “ FATAL: AN exception was raised: Traceback (most recent call last): File “./phoenix”, line 96, in <module> main() File “./phoenix”, line 74, in main params = gui.get_params(gui.CEBootDiskConfirm) File “./phoenix/gui.py”, line 1675, in get_params if guitype(args=args).skip_get_params: File “./phoenix/gui.py”, line 687, in __init__ self.boot_disk = self.get_ce_boot_disk() File “./phoenix/gui.py”, line 772, in get_ce_boot_di
All clusters will need to be upgraded at a point. If you have metro availability enabled in your environment, you will need to follow the best practices guide lines for it: https://portal.nutanix.com/#/page/docs/details?targetId=Web-Console-Guide-Prism-v510:wc-metro-availability-upgrade-considerations-r.html Specifically Nutanix supports the following replications: Between N to N-2 major versions and vice versa for STS to STS versions or LTS to STS versions. Between N to N-1 major versions and vice versa for LTS to LTS versions.
Nutanix Pulse HD provides diagnostic system data to Nutanix support teams to deliver pro-active, context-aware support for Nutanix solutions. The Nutanix cluster automatically and unobtrusively collects this information with no effect on system performance. Pulse HD shares only basic system-level information necessary for monitoring the health and status of a Nutanix cluster. OK, this is all great but let’s get to real benefits, shall we? Q 1. Why would you enable it? A. Well, for several reasons: So that if you have an issue that you raise with Nutanix support we would be able to start looking at the data about your cluster immediately without making you answer many questions that are often crucially important for a prompt issue resolution. In essence, to reduce the amount of time it takes to fix the problem. So that when Nutanix engineer requires logs they would be able to collect them themselves while you would focus on what you need to do. No frustration with logs collection,
Sorry if this topic has already been covered. I have been trying to use the new "Portable Foundation" app that runs on windows to image a cluster without using a VM. Every time I try (three so far) I get errors that the IPs I have provided are already used. I am using a flat switch and the 10G and 1G are unplugged from the customers switches. I have tried with my laptop in and out of airplane mode, with the firewall on and off and still receive the errors. The only difference is that each time I try, the listed IP conflicts are never the same. It will tell me in the first try that x, y, and z are in use, then the second time it may say that a, b, and y are in use. Any ideas? I really like the idea of this app working. Thanks, -David
Please Help: As per this video, when the new data is written to the cloned/snapshotted vDisk, what happens when we delete a snapshot? Say we created three snapshots and deleted a second snapshot which have new data written while the base vDisk was read only, what happens to the newly written data? Will it be committed to the base vDisk or the current state snapshot will be alive and other will be deleted? https://www.youtube.com/watch?v=uK5wWR44UYE
Hi, I'm already consuming API V3.0 to retrieve data from Nutanix Element. But i',m not figure how can i get usage stats info (CPU, RAM, DISK) from hosts or VMs. There's a way to do that on V3 or i need to call v2 or v1?
Hello All, The infrastructure team within my organization has recently rolled out several Nutanix environments. Unfortunately we are only able to discover the individual VM's and not the actual appliances. When we tried to address this with the Infrastructure team it was stated that no SSH credentials can be provided as the only credential come from the vendor. Our Discovery tool only supports Nutanix discovery via SSH. Which leads me to my Question? Is anybody performing Discovery on Nutanix appliance and VM's using Discovery tools in there environment and if so how are you achieving this?
CVM Swap and Partitions details. What are the partition used for metadeta.
I just had a security scan done against my cluster running AOS 5.5.6 and the only 'high' risk that came back was with cve-id CVE-1999-0548 (NFS Server Without Shares Detected): Description; A superfluous NFS server that is not sharing any file systems has been detected. How to Fix; Disable the NFS server. Obliviously, I don't think I want to disable the NFS server service on all of my cvm's - is there any official documentation that I can share with my peers to support this so that I can get an exemption from this risk on these systems?
Hello, If I have 3 Nutanix nodes and I cluster them together. How can I make a separate VPC for a test stack and a separate VPC for a Production stack? So that way I can build my VM's on the test stack and once they are good to go...I can do the same steps on my Production stack. I would like to have 2 isolated stacks for testing and production. Is this possible? Thanks
For a customer i'm managing a AHV cluster. One of the virtual machines needs to have direct access to a network interface for monitoring traffic (port mirroring). Is this possible with the current releases of AHV? With kind regards, Ruud
I'm adding workloads a new Scenario with Sizer Nutanix and I have a doubt about the sizing design because when I add a MV with 384 GB RAM the recomendation of Nodes are only 256 GB or 192 GB of RAM Memory. Could we explain why this. Regards
According to the documentation, Backplane traffic segmentation is not supported in a configuration for "ESXi clusters in which the CVM is connected to a VMware distributed virtual switch" . What I'd like to understand is whether this is related to technical reasons, or it is just a configuration limitation of the CVM installer/Prism management? So far I counldn't find a comprehensive guide/document about setting up a Nutanix cluster with vSphere distributed switches, and nodes with 2x10gbps each. It doesn't seem to make sense to me to set this up with standard swtches (i.e. no Network I/O control) where all traffic (VM, storage, vMotion, ...) use the same physical uplinks.
Warning: Use of Phoenix to re-image or reinstall AOS with the Action titled "Install CVM" on a node that is already part of a cluster is not supported by Nutanix and can lead to data loss. Use of Phoenix to repair the AOS software on a node with the Action titled "RepairCVM" is to be done only with the direct assistance of Nutanix Support. Use of Phoenix to recover a node after a hypervisor boot disk failure is not necessary in most cases. Please refer to the Hardware Replacement Documentation for your platform model and AOS version to see how this recovery is automated through Prism. What is Phoenix? Phoenix is an ISO-based installer that you can use to perform the following installation tasks on bare-metal hardware one node at a time: Configuring hypervisor settings, virtual switches, and so on after you install a hypervisor on a replacement host boot disk. This option does not require you to include AOS and hypervisor installers in the Phoenix ISO image. Installing the Controller V
Hi Team, Please let us know how to get below values using v2 apiversion. Previously we are using apiversion v1 and getting metrics using /vms https://hostname4:9440/PrismGateway/services/rest/v1/vms/ Now with api version v2 we are not able to get below mentioned metrics hypervisor_cpu_usage_ppm not able to find this with both urls(vms,virtual disks) hypervisor_memory_usage_ppm not found memoryCapacityInBytes not found ipaddresses not found but found requested_ip_address are both same?? controllerVm not found Able to get few metrics using virtual_disks and above mentioned metrics we are not able to get, Are these not available in v2 or modified to anyother url.
Below are new knowledge base articles published on the week of November 17-23, 2019. KB 8193 - NCC Health Check: secure_boot_check KB 8223 - NCC Health Check: sed_key_availability_check and sw_encryption_key_availability_check KB 8513 - VSS Snapshot Fails for Windows VM having Dynamic Volume with Multiple Disk Extents KB 8514 - NCC Health Check: fs_inconsistency_check KB 8569 - Accessing Prism from a browser on MacOS 10.15 "Catalina" blocked by ERR_CERT_REVOKED error. KB 8571 - LCM firmware update unable to commence as VMs are unable to migrate off KB 8580 - When configuring a remote site configuration (Physical Cluster), "vStore Name Mapping" field will show an error "Remote site is currently not reachable. Please try again later." KB 8594 - How to change a snapshot's expiration time to indefinite KB 8600 - Calm License Changes and Grandfathering of Existing Users KB 8614 - Nutanix Files - Deleting TLDs in a NFS distributed share Note: You may need to log in to the Support Portal to v
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.