thinking sysadmin

qstat -u aleonard -s z

Archive for the ‘cisco’ tag

Put Down the Saw and Get the Glue: Working Around VMware KB1022751

leave a comment

VMware KB article 1022751 lays out the details of an interesting bug in ESXi 4.0 and 4.1 pretty plainly:

When trying to team NICs using EtherChannel, the network connectivity is disrupted on an ESXi host. This issue occurs because NIC teaming properties do not propagate to the Management Network portgroup in ESXi. When you configure the ESXi host for NIC teaming by setting the Load Balancing to Route based on ip hash, this configuration is not propagated to Management Network portgroup.

(Note that load balancing by IP hash is the only supported option for EtherChannel link aggregation.)

Unfortunately, the KB article’s workaround – there is no patch that I’m aware of – requires network connectivity to the host via the vSphere Client. But what do you do if you’ve just sawed off the branch you’re sitting on network-wise, and can no longer connect with the vSphere client?
Read the rest of this entry »

Written by Andy

September 23rd, 2010 at 2:18 pm

Thought you fixed that DNS spoofing bug? You might need to think again.

leave a comment

So you thought you fixed the DNS spoofing vulnerability that was all over the news this month? You applied the patches and moved on to the other fifty-seven things crowded on your to-do list, thinking that you were safe? If your resolvers are behind a NAT, you might want to think again, smart guy.
Read the rest of this entry »

Written by Andy

July 27th, 2008 at 8:14 am

Posted in security

Tagged with , , ,