VMware good2know [CW04]

Newsletter

Release Notes

ProductVersionRelease DateRelease Notes
AVI Load Balancer30.1.2-2p201/28Release Notes
AVI Load Balancer30.2.1-2p501/28Release Notes
AVI Load Balancer30.2.2-2p201/28Release Notes

KB-Article

Subject

Content Library Sync/Publish fails with „Reason: The operation failed due to The operation is not supported on the object“386686

Cannot deploy Aria Operations management packs from Lifecycle Manager

386639

IPs missing from addrsets on ESX hosts leading to connectivity issues between VMs

386567

Port id for vSphere Distributed Switch is missing on physical switch# sh lldp neighbors

386566

systemd-netword.service is dead on restart or initial boot.

386534

Unable to create custom resource action

386523

Data Services Manager User Interface is inaccessible if the browser is set to a language not supported by DSM.

386520

Resetting the Passwords of an Appliance

386445

„Last time sync“ column has not been updated in Time Configuration for NTP

386444

ESXi Installation Fails at 5% with „Input/output error“ or „TimeoutError“

386393

Logs forwarded using Syslog and Raw protocol are missing the original source from Aria Operations for Logs (Formerly vRealize Operations)

386390

Data Services Manager LDAP authentication is not working

386319

Cannot remove expired certificate from Aria Operations

386284

SDDC Manager fails to configure SFTP backup

386267

VMFS Datastore inaccessibility or corruption during server decommissioning

386248

ESXi 8.0U3 frequently reports „Cannot login user root@127.0.0.1: no permission“ when lockdown is enabled

386226

Guest OS lock settings

386220


OnSite Events

EventDate
VMUG User/con Florida03/06
VMUG User/con Dutch03/12
VMUG User/con Philadelphia03/25
VMUG Connect04/23-25
VMUG User/con German05/08
Explore 2025 – Las Vegas08/25

#OnSite #Events #Community


VMSA-2025-0002 [IMPORTANT][VCSSv3:8.6]

CVE:

  • VMware Avi Load Balancer addresses an unauthenticated blind SQL Injection vulnerability (CVE-2025-22217)

Description:

  • VMware AVI Load Balancer contains an unauthenticated blind SQL Injection vulnerability. VMware has evaluated the severity of the issue to be in the Important severity range with a maximum CVSSv3 base score of 8.6.
  • A malicious user with network access may be able to use specially crafted SQL queries to gain database access.To remediate CVE-2025-22217 apply the patches to the Avi Controller listed in the ‚Fixed Version‘ column of the ‚Response Matrix‘ found below.
  • VMware would like to thank Daniel Kukuczka and Mateusz Darda for reporting this issue to us.

Response Matrix

VersionCVEFixed VersionWorkaround
30.1.1CVE-2025-2221730.1.2-2p2None
30.1.2CVE-2025-2221730.1.2-2p2None
30.2.1CVE-2025-2221730.2.1-2p5None
30.2.2CVE-2025-2221730.2.1-2p5None
Version 22.x and 21.x are not vulnerable. | Version 30.1.1 must be upgraded to 30.1.2 or later before the patch can be applied.

Podcast | Webinar | Blog Posts

Data Services Manager (TAM Blog Post)
I have decided that it is time for me to learn something new. 🙂 After Cormac Hogan joined our VMware TAM Customer Webinar Series to talk about Data Services Manager, I decided that this is a great topic for my first VMware and Home Assistant Cross Post. A long time ago I decided that it is time to outsource my Home Assistant Database and with that there is a perfect time to do it. And to be honest, I’ve had a nice DSM t-shirt since my last Explore, which I also like to wear, but I hadn’t really looked into DSM until this TAM Customer Webinar.

Discussing the VCP-VVF and VCP-VCF certification with Bart Peeters! (Podcast)
’ve seen many folks asking about how difficult the VCP-VCF and VCF-VVF exams are on X and Reddit, so I figured I would invite someone who has actually taken both exams and was even involved in the creation of various VMware exams in the past, and working on the development of an upcoming exam! The podcast is available on all platforms, and of course can be listened to below as well via the embedded player.

Best Practice or Bug? (Podcast)
In this episode of the Virtually Speaking Podcast, we explore the fascinating origins of IT best practices with Cody Hosterman, Sr. Director of Product Management at Pure Storage. Cody shares insights on how many best practices were born out of real-world challenges—often solving for bugs and limitations that shaped today’s IT norms.

Lessons from Battling Ransomware in the Real World with VCF and vDefend (Podcast)
Join Eric Nielsen and Bob Plankers as they dive into one of the most pressing topics in IT today: Ransomware Defense. This week, we’re joined by Waldemar Pera, Enterprise Architect, VMware customer, and community favorite, who shares valuable insights from his popular sessions at VMware Explore.
From strengthening your environment with VMware Cloud Foundation to leveraging the power of vDefend Firewall with ATP, we’ll explore real-world lessons and actionable strategies to fortify your organization against cyber threats.
Plus, don’t miss Corey’s vExpert News and our fan-favorite Barbecue Report, where Waldemar shares his go-to smoked brisket recipe!

How to Convert a VMware vSphere Environment to VMware Cloud Foundation (Webinar)
If you have an existing vSphere environment that you want to manage like VCF, but you do not have any pre-existing VCF SDDC Manager instances deployed, you can convert the environment to VCF.
Learn from VCF Professional Services how you can convert vSphere to VCF so that you can automate and simplify the lifecycle of your environment.
Walk through a demo of deploying a new SDDC Manager into an existing vSphere environment and converting the environment to VCF.

Aria Automation – Change IP address (TAM Blog Post)
Since I am reorganizing my homenetwork, I wanted to move the Aria Products in their own network and created an extra VLAN with another IP subnet. In this blog I will share my experience with changing the IP address of my Aria Automation appliance. The starting situation is as follows:




Schreibe einen Kommentar

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert