July 23, 2024
VMware Cloud Director 10.6 is now GA

As we delve into the brand new Broadcom Benefit Companion Program with a number of cloud providers choices, VMware by Broadcom is thrilled to announce that VMware Cloud Director 10.6 is now obtainable as a part of the VCF (VMware Cloud Basis) providing, beginning June twenty seventh, 2024. This main launch brings new options and enhancements that can revolutionize your managed non-public and public cloud choices.

Our relentless concentrate on multi-tier tenancy has led to the introduction of revolutionary capabilities and enhancements to present ones, offering you with unparalleled flexibility, scalability, and management. Whether or not you’re trying to streamline your cloud operations or develop your attain, VMware Cloud Director 10.6 has obtained you coated.

On this newest replace, you’ll discover vital enhancements and new options within the following areas:

Three-Tier Tenancy

VMware Cloud Director permits cloud suppliers to determine a multi-layered organizational construction by way of the UI, often called the three-tier tenancy mannequin, to create sub-provider organizations with restricted administrative privileges over a particular set of tenants.

With this functionality, cloud suppliers can grant restricted entry to particular assets and providers inside their infrastructure, making certain that every tenant has managed entry to solely the assets they want. This enhanced tenancy mannequin additionally allows better scalability, flexibility, and safety, as cloud suppliers can simply handle and provision assets throughout a number of ranges of administration.

This revolutionary strategy allows cloud suppliers to undertake numerous enterprise fashions, similar to:

  1. Create sub-provider organizations which facilitate nested multi-tenancy inside massive enterprise organizations, permitting them to create separate administrative hierarchies for various departments or subsidiaries.
  2. Resell cloud providers by way of companions or managed service suppliers.

This launch brings the three-tier tenancy functionality to all points of assets and providers obtainable by way of VMware Cloud Director, making it an excellent resolution for cloud suppliers trying to supply versatile and scalable cloud providers to their clients.

Scale Limits

This launch brings vital most scale enhance in a number of areas of the platform similar to:

  • The utmost variety of VMs per VMware Cloud Director occasion has been elevated to 55,000, no matter energy state.
  • The variety of concurrent distant consoles supported has been elevated to 22,000.
  • The utmost variety of customers supported by the platform has been elevated to 300,000.
  • The organizational mannequin for grouping Digital Knowledge Middle Collections (Org VDCs) has been revamped to undertake a three-tier construction. Underneath this new design, the Sub-Supplier can now handle Knowledge Middle Teams, which may accommodate as much as 2000 members (beforehand 16) and share networks and uplinks amongst them.

A number of VM and vApp Snapshots

VMware Cloud Director now presents enhanced flexibility in your digital machines and vApps with the power to take a number of snapshots per VM or per vApp, as much as a most quantity set by your cloud supplier.

By supporting a number of snapshots, VMware Cloud Director supplies a extra environment friendly and versatile option to handle your digital machines, supplying you with better management and confidence in your cloud infrastructure.

Content material Hub

Now, effortlessly handle and orchestrate your containerized purposes and assets throughout the cluster with the enhancements made to the Content material Hub.

  • Kubernetes cluster directors can now outline exact entry controls, granting particular person customers or teams tailor-made permissions to entry particular clusters, namespaces, or purposes. This characteristic allows a multi-tenant structure, permitting a number of organizations to securely coexist throughout the similar Kubernetes surroundings, every with their very own remoted namespace to deploy, handle, and govern their containerized workloads.
  • A brand new model of the Content material Hub Operator has been launched, which runs natively throughout the Kubernetes cluster and makes use of WebSocket Protocol, for high-performance communication with VMware Cloud Director. The operator additionally supplies real-time compatibility reporting to the Tenant Portal, enabling cluster house owners to make knowledgeable choices about when to improve to make sure seamless integration with VMware Cloud Director.

Distributed International Catalog

Enable for a world, multi-site cloud structure by enabling seamless entry to catalogs throughout a number of VMware Cloud Director (VCD) websites, offering a unified catalog expertise for tenants whatever the vCenter occasion or SDDC infrastructure. Leverage vendor-agnostic shared storage options (similar to NetApp, Dell, vSAN, and so on.) to copy information and guarantee world consistency throughout the catalog.

A number of IDP Protocols and Native customers

VMware Cloud Director permits organizations to make the most of a number of id supplier protocols (IDP), together with LDAP, SAML, and OpenId Join (OIDC), for a extra complete authentication strategy. By leveraging exterior id suppliers, you possibly can profit from the most recent developments in authentication know-how. It’s value noting that whereas native customers are nonetheless supported for analysis functions within the present launch, their use in manufacturing is being deprecated, and can proceed to be absolutely supported till the subsequent main launch of VMware Cloud Director.

Improved VM Template instantiation efficiency

When provisioning a VM template on a special vCenter utilizing VMware Cloud Director, the system takes a two-pronged strategy to make sure environment friendly deployment. Initially, it makes an attempt to speed up the method by cloning the VM template straight, leveraging the velocity and effectivity of this methodology. This strategy permits the system to quickly create a brand new VM occasion with out the overhead of exporting and importing the VM as an OVF file. Nevertheless, if the cloning operation encounters any points or errors, the system will mechanically swap to a extra conventional methodology, using OVF export/import to deploy the VM. This fallback strategy ensures that the provisioning course of is accomplished efficiently, even in instances the place cloning will not be attainable.

Enhanced Encryption Administration

VMware Cloud Director 10.6 introduces a number of enhancements to the encryption administration characteristic:

  • A number of Key Suppliers may be registered concurrently, offering better flexibility and scalability.
  • The cluster title may be edited throughout key supplier publishing, permitting service suppliers to simply establish which key supplier belongs to which tenant.
  • When authenticating a Key Supplier or registering a brand new key, customers can now go for producing a brand new key for every encryption operation, making certain added safety.
  • A brand new key rotation characteristic has been launched, enabling automated key rotation primarily based on configuration settings. This course of is non-disruptive and ensures seamless encryption.
  • VMware Cloud Director 10.6 introduces a brand new characteristic that permits customers to use totally different encryption insurance policies to totally different storage insurance policies, offering better flexibility and customization of their encryption methods.
  • When deleting an encryption coverage, VMware Cloud Director 10.6 now supplies the choice to ‘Don’t re-encrypt’ beforehand encrypted information.

Resolving CVE-2024-22272 Vulnerability

For extra data on this vulnerability and its influence on VMware by Broadcom merchandise, see VMSA-2024-0014.

IPv6 Help for VMware Cloud Director equipment nodes

VMware Cloud Director helps the deployment of equipment cells in IPv6 networks, enabling clients to leverage the advantages of this contemporary networking protocol whereas sustaining compatibility with present infrastructure.

Customized Well being Monitor

As a part of our ongoing efforts to boost the person expertise, we’re introducing Customized Well being Displays as a complement to our present HTTP insurance policies. With this characteristic, tenants can now monitor and troubleshoot numerous well being traits of their load-balanced providers, together with metrics similar to response time, packet loss, and connection errors. This permits them to take proactive measures to keep up service reliability and responsiveness.

Avi Load Balancer Logging

With the brand new tenant-level Avi LB logging functionality, tenants and cloud suppliers can now acquire a deeper understanding of their Avi LB utilization. This characteristic supplies granular visibility into Avi LB exercise, enabling them to trace utilization patterns, triage occasions, and export logs for auditing, compliance, and regulatory functions.

Avi LB WAF

The Avi LB and Cloud Director integration opens up new alternatives for our clients to ship value-added providers to their finish clients. By integrating WAF safety features into their service portfolio, they’ll present enhanced safety in opposition to web-based assaults, enhance buyer satisfaction, and strengthen their market place.

With the introduction of WAF, listed below are among the benefits:

  • Improved safety: WAF helps shield in opposition to web-based assaults, similar to SQL injection and cross-site scripting (XSS), by filtering incoming site visitors and blocking malicious requests.
  • Enhanced compliance: WAF will help organizations meet regulatory necessities by offering visibility into net site visitors and permitting them to dam particular sorts of site visitors or requests.
  • Elevated buyer belief: By providing WAF as a value-added service, organizations can reveal their dedication to safety and construct belief with their clients.
  • Aggressive differentiation: WAF generally is a key differentiator for organizations trying to stand out in a crowded market, because it supplies an extra layer of safety and safety.

IP Tackle Administration

Vital upgrades have been made to IP Tackle Administration, with a concentrate on simplifying IP reservations for workloads and allocating IP addresses to long-lived providers, similar to load balancer digital IPs. These enhancements are designed to align with a three-tier permission construction, offering a user-friendly expertise for managing IP handle lifecycles, that are derived from IP swimming pools for tenants, sub-providers, and supplier personas.

IPsec VPN on Supplier Gateways and Edge Gateways

VMware Cloud Director has prolonged its IPsec VPN capabilities to incorporate tunnel institution on devoted supplier gateways. The up to date VPN administration framework is now structured right into a three-tier mannequin, permitting tenants, sub-providers, and suppliers to arrange and handle VPNs. With this enhanced functionality, suppliers can use Border Gateway Protocol (BGP) to regulate which IP prefixes make the most of the VPN. Moreover, suppliers and sub-providers can automate BGP configuration for his or her tenants when utilizing IP Areas to handle community assignments for private and non-private addressing. Furthermore, suppliers and sub-providers can delegate particular BGP configurations to their tenants, offering better flexibility and management.

New UX for deploying Avi Controllers and NSX Cloud Connectors

VMware Cloud Director 10.6 introduces vital enhancements to the provisioning of Avi Controllers and NSX Cloud Connectors, thereby boosting Avi LB scalability. The brand new person expertise (UX) allows directors to simply add extra Cloud Controllers to present Avi Controllers, permitting for elevated capability and efficiency. Moreover, the UX supplies useful insights into consumption metrics for Avi controllers, NSX cloud, and edge gateways, empowering directors to make knowledgeable choices about useful resource allocation and optimization.

Safety Log Ingestion

VMware Cloud Director has enabled log ingestion, seamlessly connecting to VMware Aria Operations for Logs. NSX Gateway Firewall and Distributed Firewall logs are actually mechanically processed by VMware Aria Operations for Logs, offering quick access to those logs by way of the tenant portal. This integration empowers tenants to shortly discover particular occasions utilizing filters and time ranges, and export logs to CSV recordsdata for additional evaluation and reporting.

Name To Motion:

  • Get began with VMware Cloud Director 10.6 by downloading the most recent model from here.
  • For detailed data on the right way to use and configure VCD 10.6, please check with the official documentation here.
  • For extra assets and details about VCD, go to the devoted VMware Cloud Director web page on vmware.com here.
  • To view the API information learn the legacy API information here and the OpenAPI information here.

Object Storage Extension 3.1

VMware Cloud Director Object Storage Extension model 3.1 introduces new options, together with:

  • MinIO assist for exterior Kubernetes clusters.
  • Shopper IP forwarding for personalized bucket entry management.
  • Enhanced Kubernetes Backup and Restore UI for higher visibility and administration.
  • OSIS (Object Storage Interoperability Service) updates for S3-compliant storage distributors and asynchronous tenant onboarding.

Name To Motion: Obtain OSE 3.1 from here and skim the OSE 3.1 documentation here.

To share this weblog along with your friends and colleagues, please use this hyperlink: https://bit.ly/45mY62F