Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Part07-(Picture and text) NSX series check the integrity of VIBs on ESXi hosts

2025-01-16 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

In order to ensure that the relevant VIBs has been successfully installed on the corresponding host, we also need to go to each host to do a verification (not a necessary step, but to develop a strict technical habit so that we can avoid hitting the wall, which the cat has told our students countless times).

In the previous Part06, it has been installed. After the successful installation, in figure 01, you can clearly see the status of the relevant components:

Figure 01

After confirming this step, you can go to the CLI to check the related components one by one. First, the status of the UWA (full name: User World Agent) that needs to be verified. Because after successfully Push the components of NSX on the host, there will be an extra process called netcpad in the running state of the system. UWA and Control Plane on NSX Controller communicate through the SSL security component. UWA acts as a communication intermediary between NSX Controller and the hypervisor kernel, but Distributed Firewall is not on this communication list. Whether it is the communication between ESXi to NSX Manager or NSX Controller, it all goes through UWA. UWA collects statistics from NSX Manager through message bus agent

How do I view this UWA? You can check it from the command line. When VIBs is completed on the ESXi host Push, there will be an extra thing called netcpad under the / etc/init.d directory, which can be viewed by executing the following command:

# / etc/init.d/netcpad status

The output is shown in figure 02, prompting netCP agentservice is running:

Figure 02

How do I check the running status of this netcpa? You can view it through the esxtop command. Under the CLI of the ESXi host, when you execute the command esxtop, you can see the red box selection shown in figure 03, a process named netcpa.42230:

Figure 03

At the same time, UWA is responsible for maintaining the log messages in / var/log/netcpa.log, and you can execute commands from the command line:

1. # ls / var/log

You can view the screenshot message shown in figure 04, in which you can see the real storage path of netcpa.log:

Figure 04

The above information is a way to teach us how to view UWA, netcpa and other messages. Next, we will take a look at the three VIBs about NSX, which are:

Esx-vxlan

Esx-vsip

Esx-dvfilter-switch-security

These component packages represent several important functions of NSX respectively. Relying on their existence, NSX can only be implemented as a SDN solution.

First, execute the following command to check whether the VIB esx-vxlan is installed successfully, command:

1. # esxcli software vib get-vibname esx-vxlan

The output is shown in figure 05:

Figure 05

From the result shown in figure 05, you can see the specific version number and purpose of the vxlan component, and the red box describes the purpose of the component, where it starts, and so on. When you see these messages, the esx-vxlan component is installed successfully.

Next, execute the following command to check whether the VIB esx-vsip is installed successfully, command:

1. # esxcli software vib get-vibname esx-vsip

The output is shown in figure 06:

Figure 06

From the result shown in figure 06, you can see the specific version number and purpose of the esx-vsip component, and the red box describes the purpose of the component, where it starts, and so on. Seeing these messages indicates that the esx-vsip component has been successfully installed. Indicates that this VIB contains the functions of DFW and NetX

Finally, execute the following command to check whether the VIB esx-dvfilter-switch-security is installed successfully, command:

1. # esxcli software vib get-vibname esx-dvfilter-switch-security

The output is shown in figure 07:

Figure 07

From the result shown in figure 06, you can see the specific version number and purpose of the esx-dvfilter-switch-security component, and the red box describes the purpose of the component, where it starts, and so on. Seeing these messages indicates that the esx-dvfilter-switch-security component has been successfully installed. Indicates that the VIB contains a dvfilter-switch-security module

To be continued.

Loneliness is God's reminder that it's time to enrich yourself!

Virtual human will provide you with more VMware knowledge. Thank you for following Wechat vmanager_forum.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report