bluelock 3.0 best practices and faq€¦ · provided a second internet circuit (internet02)...

17
SERVICES FAQ www.bluelock.com | 1 Bluelock 3.0 Best Practices and FAQ TABLE OF CONTENTS Section 1 – User Interface Navigation............................................................ 2 vCloud® Director Web Console Operating System Support ................................... 2 Browser Requirements.......................................................................................................... 2 Internet Explorer Settings.................................................................................................... 3 Website Delay .......................................................................................................................... 4 vApp/Virtual Machine Selection ....................................................................................... 4 Uploading and Downloading to/from vCloud............................................................. 4 Section 2 – Networking................................................................................... 6 Organization vs. vApp Networking .................................................................................. 6 vShield™ Edge (vSE) ............................................................................................................... 7 VM Network Settings............................................................................................................. 7 Section 3 – Virtual Machine Specifics ............................................................ 8 Windows Guest Customization ......................................................................................... 8 Linux Guest Customization ................................................................................................. 9 Adding Resources ................................................................................................................. 10 Hot Add .................................................................................................................................... 10 Shutting Down/Powering Off Virtual Machines ........................................................ 11 Unlocking a Stuck vApp ..................................................................................................... 12 Deleting an Empty vApp.................................................................................................... 13 Section 4 – Licensing .................................................................................... 13 Guest OS and Application Licensing ............................................................................. 13 Checkpoint Licensing.......................................................................................................... 13 Using Your Own Licenses ................................................................................................... 13 Section 5 – Backup and Restore ................................................................... 13 Opting into Backup .............................................................................................................. 13 Viewing Backup Reports .................................................................................................... 14 Requesting a Restore........................................................................................................... 14 Section 6 – Terms and Definitions ............................................................... 14 Organizations ......................................................................................................................... 14 Users and Groups.................................................................................................................. 14 Virtual Datacenters............................................................................................................... 15 Organization Networks....................................................................................................... 15 vApp Networks ...................................................................................................................... 15 Catalogs ................................................................................................................................... 15 Section 7 – Frequently Asked Questions...................................................... 15

Upload: others

Post on 13-Jul-2020

5 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

SERVICES FAQ

www.bluelock.com | 1

Bluelock 3.0 Best Practices and FAQ

TABle oF ConTenTs

section 1 – User Interface navigation............................................................2

vCloud® Director Web Console Operating System Support ................................... 2Browser Requirements.......................................................................................................... 2Internet Explorer Settings.................................................................................................... 3Website Delay .......................................................................................................................... 4vApp/Virtual Machine Selection ....................................................................................... 4Uploading and Downloading to/from vCloud ............................................................. 4

section 2 – networking ...................................................................................6

Organization vs. vApp Networking .................................................................................. 6vShield™ Edge (vSE) ............................................................................................................... 7VM Network Settings............................................................................................................. 7

section 3 – Virtual Machine specifics ............................................................8

Windows Guest Customization ......................................................................................... 8Linux Guest Customization ................................................................................................. 9Adding Resources .................................................................................................................10Hot Add ....................................................................................................................................10Shutting Down/Powering Off Virtual Machines ........................................................11Unlocking a Stuck vApp .....................................................................................................12Deleting an Empty vApp ....................................................................................................13

section 4 – licensing ....................................................................................13

Guest OS and Application Licensing .............................................................................13Checkpoint Licensing ..........................................................................................................13Using Your Own Licenses ...................................................................................................13

section 5 – Backup and Restore ...................................................................13

Opting into Backup ..............................................................................................................13Viewing Backup Reports ....................................................................................................14Requesting a Restore...........................................................................................................14

section 6 – Terms and Definitions ...............................................................14

Organizations .........................................................................................................................14Users and Groups ..................................................................................................................14Virtual Datacenters...............................................................................................................15Organization Networks.......................................................................................................15vApp Networks ......................................................................................................................15Catalogs ...................................................................................................................................15

section 7 – Frequently Asked Questions......................................................15

Page 2: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 2

SERVICES FAQ

section 1 – User Interface navigation

A. vCloud Director Web Console Operating System SupportThe following Operating systems are supported for the vCloud Director Web Console:

◦ Windows XP Pro 32-bit ◦ Windows XP Pro 64-bit ◦ Windows Server 2003 Enterprise Edition 32-bit ◦ Windows Server 2003 Enterprise Edition 64-bit ◦ Windows Server 2003 Standard Edition 32-bit ◦ Windows Server 2003 Standard Edition 64-bit ◦ Windows Server 2008 32-bit ◦ Windows Server 2008 R2 32-bit ◦ Windows Vista 32-bit ◦ Windows Vista 64-bit ◦ Windows 7 32-bit ◦ Windows 7 64-bit ◦ Red Hat Enterprise Linux 4 32-bit ◦ Red Hat Enterprise Linux 5 32-bit, Update 4 ◦ Red Hat Enterprise Linux 5 32-bit, Update 5 ◦ SLES 11 32-bit

Source: http://kb.VMware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=1026735

NOTE The use of Mac OS X is not supported.

B. Browser RequirementsBrowsers such as Google Chrome, Opera, Safari, Mobile browsers and unsupported versions of Internet Explorer or Firefox may exhibit errors. Please use supported browsers and plugins in order to guarantee compatibility.

NOTE The vCloud Director Web Console is only compatible with 32-bit browsers. If you are using a 64-bit platform, you must still use a 32-bit browser and plugins.

Also other viruses, malware and intrusive plugins may cause connectivity issues. Please ensure your computer is running up-to-date protection as to mitigate these problems.

Please see the table below for supported browsers, Flash and Java versions:

Page 3: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 3

SERVICES FAQ

C. Internet Explorer SettingsPlease add the site https://zone01.bluelock.com to your Trusted Sites.

Alternatively, you may set the following security settings:

Figure 1. Source: http://www.VMware.com/pdf/vcd_15_install.pdf.

Page 4: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 4

SERVICES FAQ

NOTE You may find it necessary to toggle the Compatibility view in Internet Explorer in order to correct display errors.

D. Website DelayIn order for the server to receive and process your command, please make sure to allow time for navigating between panes on the website. Also, if you see an In Progress (see below) notification, please allow for this to finish before proceeding to your next command.

NOTE In order to see the most up-to-date information you may use the vCloud refresh button “ ”. Please note that this is different than your browser’s refresh button.

E. vApp/Virtual Machine SelectionIn the My Cloud/vApp screen you must make certain to left-click the Virtual Machine that you wish to change. Once this is done you will see the Virtual Machine highlighted, indicating that you are changing its properties (vs. the vApp’s properties). You may then right-click the Virtual Machine to open the Virtual Machine options menu.

NOTE Due to this frequent error, we recommend selecting Virtual Machines from the “Virtual Machines” tab next to the “vApp Diagram” tab.

Figure 2. Set Microsoft Internet Explorer security settings.

Page 5: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 5

SERVICES FAQ

F. Uploading and Downloading to/from vCloudYou may upload uncompressed OVF version 1.1 images to vCloud via the uploader located in your Organization’s catalog. You may select the Catalogs tab at the top of your vCloud interface, then My Organization’s Catalogs, then finally select the catalog upload destination. Click the “ “ Upload button to launch the Java applet and select the OVF to upload.

NOTE If you are having difficulties with the Java uploader or if the upload is large ( >20GB) then you may submit a support request for an alternate transfer method. We can offer you a temporary FTP/SFTP account to transfer the files. We also accept images on USB disk/optical media (support charges may apply).

Figure 3. The Virtual Machine is not highlighted. This will edit the vApp settings.

Page 6: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 6

SERVICES FAQ

section 2 – networking

A. Organization vs. vApp NetworkingIt is important to understand the difference between Org-level and vApp-level networking. An Org-level network can be attached and used by all VM’s in your Org. A vApp network may only be used by the VM’s inside that vApp and may only communicate inside the vApp if it is routed to an Org network.

i. Adding a Network to a vApp In order to attach a network (either Org or vApp) to a VM, you must first add the network to the vApp. To add a network to a vApp, go to the Networking tab in your vApp, check the Show networking details option and select the Add Network… button in the lower right-hand corner. If you are adding a vApp network, this will be created. If you are adding an Org network, it will be attached to the vApp. NOTE vApp networks may only reach outside their vApp by attaching to an Org network. If you wish to route over your vApp network, you must select a Connection. This will create a vShield Edge (vSE) Device. See below for configuration of vSEs. Once you are finished adding networks click the Apply button at the bottom right.

ii. Removing a Network from a vApp You may remove a network from a vApp via the Networking tab in your vApp. This may only be done while the vApp (and all the VM’s inside) have been powered off.

Figure 4. The Virtual Machine is selected. This will edit the Virtual Machine’s settings.

Page 7: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 7

SERVICES FAQ

iii. Viewing and Configuring your Org Networks You may access your Org networks from the Administration tab at the top of the screen. Then select Networks from under Cloud Resources. NOTE You cannot create Org Networks from inside your UI. Please contact Bluelock support for any additional Org networks you would like created. NOTE If you are experiencing issues with a Checkpoint Firewall HA (high-availability) configuration or F5 HA pair, you may request a VLAN-backed Org network be created for the HA traffic between the drives. You may see IP Allocations and network properties via this Org network screen. If you have had an Org level vSE created for your company, it will be listed on this page. See below for information on how to configure the Org vSE.

iv. Adding Public IPs to your External Network After the initial provisioning of your External Network (internet01); if you have a need to add additional Public IPs you will be provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional block of Public IPs to the external interface of that device. These IPs will not be seen or managed by vCloud Director.

v. IP Changes in vCloud without Guest Customization/VMware Tools If Guest Customization has been disabled or if VMware tools have not been installed on an operating system then any IP Changes in vCloud will not be published to the OS. In order to ensure the proper updating of IP addresses in all of your organization’s Virtual Machines, we recommend keeping VMware tools updated and managing your IP addresses through the vCloud interface.

B. vShield Edge (vSE)Both the Org and vApp vSE’s have the ability to serve DHCP, NAT connections behind the firewall to one IP address, Firewall specific ports and static route networks. Org vSE’s also give you the ability to perform site-to-site VPN.

You may configure a vSE by right-clicking and selecting the Configure Services… option.

Configuring a VPN may be done via the Org vSE. Here you may configure a VPN to another Org within the vCloud, another vSE in your Org or to a remote network.

When connecting to a remote network the following information will needed: ◦ Peer IP address – This is the IP address of your VPN device at your company’s location. ◦ Peer Gateway – This is your company’s network. Note that the vCloud vSE VPN only supports tunnels to one network. ◦ Peer Subnet mask – This is your company network’s subnet mask. ◦ You are given the option of AES-256, AES and 3DES.

Other pertinent settings are as follows: ◦ Phase 1 (IKE)

▪ Hashing – SHA for AES – 256 and AES, MD5 for 3DES ▪ Perfect forward Secrecy PFS — Enabled ▪ Diffie Hilman Group 2 ▪ Lifetime 28800 Seconds

◦ Phase 2 (IPSEC) ▪ ESP Authentication – SHA for AES-256 and AES, MD5 for 3DES

C. VM Network SettingsIn order to change vClouds network settings; right-click the VM and select Properties then select the Hardware tab. Note that these settings persist inside vCloud, however if you change the IP address in the operating sytem, vCloud will have no knowledge of this.

Page 8: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 8

SERVICES FAQ

NOTE We recommend managing your IP addresses from vCloud Director. This will ensure that you do not reuse static IPs and cause conflicts with your networking.

◦ DHCP vs. Static - IP Pool vs. Static - Manual You are given an option when creating a VM, and when you add a Network Interface to a VM, to choose an IP Mode:

▪ DHCP will dynamically grab a new IP address each time the network adapter is reset. In order for your VM to utilize DHCP, you must either configure the vSE to serve DHCP (see above) or you will need to run a DHCP server from within another VM in your network.

▪ Static - IP Pool will force vCloud to pick an IP address from the Static IP Pool of your network. You may see the pool configuration by going to that network and right-clicking Properties. You may see the IPs that VMs have claimed by right-clicking the network and selecting IP Allocations.

▪ Static - Manual will allow you to manually specify the network from the Static IP Pool of your network. You may see the pool configuration by going to that network and right-clicking Properties. You may see the IPs that VMs have been specified by right-clicking the network and selecting IP Allocations.

section 3 – Virtual Machine specifics

A. Windows Guest CustomizationIt is important to realize what the Guest Customization feature of vCloud Director does to a Windows machine. For many situations this will run the Microsoft Sysprep utility in order to perform low-level operating system reconfiguration. The Guest Customization is useful when creating templates and performing password recovery.

For an explanation of what Sysprep is and what it performs please see the following:http://technet.microsoft.com/en-us/library/cc766514%28v=ws.10%29.aspx

NOTE If you deploy an item from the Bluelock Catalog, Guest Customization will be enabled by default. It is recommended that after it is deployed you shut off the Virtual Machine and uncheck Guest Customization.

This option is observed and modified (only while the VM is powered off) by right-clicking a VM, selecting Properties, and selecting the Guest OS Customization tab.

Page 9: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 9

SERVICES FAQ

i. Guest Customization can cause a machine to disconnect from an Active Directory domain.

ii. If you run Guest Customization on a domain controller, it is unlikely you will be able to rejoin a domain with this machine or run dcpromo to make this machine a domain controller again.

iii. If you run Guest Customization on an Exchange server, the Exchange software will likely not function.

iv. If you would like to ensure Guest Customization is running, select the Power On and Force Recustomization option by right-clicking a VM while it is powered off.

v. Guest Customization may only be run on machines with VMware tools installed.

vi. Guest Customization will reset the Server Name and IP addresses to those configured in vCloud.

vii. Guest Customization may take several reboots of the Guest operating system to complete.

B. Linux Guest CustomizationThe Linux Guest Customization is similar the Windows Guest Customization in that it will reconfigure the operating system with settings configured in vCloud.

Figure 5. The Guest OS Customization tab in the Virtual Machine Properties menu.

Page 10: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 10

SERVICES FAQ

NOTE If you deploy an item from the Bluelock catalog, Guest Customization will be enabled by default. It is recommended that after it is deployed you shut the Virtual Machine off and uncheck Guest Customization.

i. Linux Guest Customization that has been on machines from our catalog will set a domain name. This is to prevent the sendmail application from hanging on boot. Please remove the Guest Customization script (at the bottom of the Guest Customization tab) or change the domain name after the Guest Customization completes.

ii. Guest Customization may only be ran on machines with VMware tools installed.

iii. Guest Customization will reset the Server Name and IP addresses to those configured in vCloud.

iv. Guest Customization may take several reboots of the Guest operating system to complete.

C. Adding ResourcesYou may resize hard disks and add disks, memory and CPUs to a Virtual Machine. In order to perform these tasks, your Virtual Machine must be powered off. Alternatively, see below for Hot Add requirements.

i. General The operating system of your Virtual Machine must be capable of the CPU, memory and hard disks you are adding. For these maximums, please see below:

• http://msdn.microsoft.com/en-us/library/windows/desktop/aa366778%28v=vs.85%29.aspx• http://www.redhat.com/products/enterprise-linux/server/compare.html

ii. vCPU NOTE We recommend using CPU’s in the quantity of power of 2 (i.e. 1,2,4,8) in order to prevent possible operating system and application issues. There is a known issue of using a non-power of 2 CPU with Bluelock’s environment. Please see below:

• http://kb.VMware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=2003484

iii. Hard Disk Hard disks that are resized or added must be reconfigured in the operating system in order to make use of these resources. Utilities such as fdisk, lvresize and Windows Disk Utilities may be required. There is a Bluelock environment maximum of 900 GB per disk. You may make up to 4 SCSI buses and 14 drives per bus (for a total of 52 Disks). However, note that adding many large disks may lengthen backup duration.

NOTE While it is possible to resize your hard disk, it cannot be done from the vCloud Director UI. You may contact support and have this operation performed during normal business hours. Please make note in your ticket the exact location and name of the VM, which disk number, what total size you wish to make this disk and how much you are adding (e.g. resize Disk 0 from 30GB to 40GB, add 10GB).

NOTE Shrinking your hard disks is not supported and will likely cause data loss.

D. Hot AddHot adding resources to Virtual machines is possible as long as your operating system and applications support this.

NOTE Hot removal is not supported.

NOTE The Hot Add features of vCloud are not supported by Bluelock’s Client Services. Any operation that is performed via Hot Add is done at the client’s discretion. Bluelock Client Services recommends using standard powered-off VM resource additions.

i. General The operating system of your Virtual Machine must be capable of the CPU, memory and hard disks you are adding. For a sample of these maximums, please see below:

• http://msdn.microsoft.com/en-us/library/windows/desktop/aa366778%28v=vs.85%29.aspx

Page 11: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 11

SERVICES FAQ

• http://www.redhat.com/products/enterprise-linux/server/compare.html

ii. Hot Add Memory This option must be selected via the Properties of the VM while it is powered off.

iii. Hot Plug vCPU This option must be selected via the Properties of the VM while it is powered off.

iv. Hot Expand Hard Disk While it is possible to perform this task, it cannot be done from the vCloud Director UI. You may contact support and have this operation performed during normal business hours. Please make note in your ticket the exact location and the name of the VM, which disk number and what total size you wish to make this disk and how much you are adding (i.e. resize Disk 0 from 30GB to 40GB, add 10GB). NOTE Hot adding hardware is dangerous and may cause data corruption. Please have proper data loss prevention procedures in place.

E. Shutting Down/Powering Off Virtual MachinesUsing the Power Off function with a VM is a hard shutdown (equivalent to holding in the power button) to that operating system unless VMware tools are installed and running and the vApp settings have the Stop Action set to Shut Down.

Figure 6. Shut down or power off Virtual Machines by selecting the respective option n the vApp Settings.

Page 12: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 12

SERVICES FAQ

F. Unlocking a Stuck vAppIf you find yourself in a situation where you cannot add any VM to your vApp or if you cannot move a Virtual Machine from one vApp to another you might find it helpful to force the server to re-read the configuration files on server.

We have found the easiest way to perform this task is to go into the properties of any Virtual Machine in the vApp that you are having trouble with, navigate to the Hardware Tab, select Show network adapter type then click the OK button.

NOTE Do not make any changes to your hardware.

Figure 7. Setting the Stop Action of a Virtual Machine by accessing the vApp Properties.

Figure 8. Unlock a stuck vApp by selecting Show network adapter type under the Hardware tab.

Page 13: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 13

SERVICES FAQ

G. Deleting an Empty vAppIt is not currently possible to delete an empty vApp that is powered on. It is also not possible to power off an empty vApp. We recommend creating a small “dummy” VM in that vApp, power off the vApp, delete the “dummy” VM and remove all Org networks from the vApp. With these steps performed, you should be able to delete the vApp.

section 4 – licensing

A. Guest OS and Application LicensingFor your convenience we provide several frequently used operating systems that are regularly patched in the Bluelock public catalog. The following are a list of those operating systems:

i. Open source operating systems• CentOS 5 64-bit• Ubuntu 10.04 64-bit

ii. Licensed “Payware” operating systems• Redhat Enterprise Server 5 32-bit• Redhat Enterprise Server 5 64-bit• Microsoft Windows 2003 R2 Standard 32-bit• Microsoft Windows 2003 R2 Standard 64-bit• Microsoft Windows 2008 Standard 32-bit• Microsoft Windows 2008 Standard 64-bit• Microsoft Windows 2008 R2 Standard 64-bit• Microsoft Windows 2008 R2 Enterprise 64-bit

NOTE Licensed operating systems deployed from our catalog will incur a monthly cost to your Organization.

B. Checkpoint LicensingIf you would like a Bluelock-managed Checkpoint Firewall added to your Organization you may request this service via a support ticket. If you do not wish to have a managed Checkpoint Firewall, you may upload and install a particular version of Checkpoint software with the manufacturer’s recommended settings.

NOTE If you are setting up a Checkpoint, it is recommended that you use the E1000 NIC type. Using a Flexible NIC type will cause the Checkpoint to negotiate only 10 Mb/s speed which may not be suitable for your environment.

C. Using Your Own LicensesNOTE We do not support the use of our catalog items with your licenses. If you deploy a VM from our catalog that uses a license you will be billed for it. Also, if you clone a machine that was originally from our catalog and requires a license you will be billed for the resource and any subsequent clones. We recommend that if you wish to use a licensed operating system but with your own licenses that you upload media to your catalog or upload a Virtual Machine image and create a template.

Unfortunately, due to the nature of our licensing system, if you have deployed a licensed OS from our catalog there is currently no method in which to change its licensing to your own. If you wish to change to a self-licensed operating system you will be required to delete the VM’s that were deployed from the catalog.

section 5 – Backup and Restore

A. Opting into BackupHardware Version 7 backup requirement:Since VM’s that are running Hardware Version 4 do not support Change Block Tracking (CBT), only hardware version 7 Virtual Machines may be opted into backup.

Page 14: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 14

SERVICES FAQ

In order to opt-in to backups you must login to Portfolio (https://portfolio.bluelock.com) and select the Datacenter/Backup tab. Backup job additions are performed during normal business hours.

NOTE Full monthly backups, which are sent off-site, may not occur until a full-tape cycle has been performed. Recently opted in VM’s may not have full off-site backups until the following month.

i. Renaming VM’s may cause the VM to opt out of backup. When renaming VMs, it is best to verify that the backup continues to function using the new name. If the backup no longer functions, you will need to reopt-in to backups for this VM.

ii. Cloned VMs are not backed up. VMs that are cloned inside your Organization are not automatically opted into backup. You must opt-in to backup for any cloned VMs.

B. Viewing Backup ReportsIn order view backup reports you must login to Portfolio (https://portfolio.bluelock.com) and select the Datacenter/Backup tab. In order to find backups for a specific VM, you may navigate the hierarchy on the left-hand side of the page. Machines with a green check have completed the backup for that date.

C. Requesting a RestoreIn order to request a restore, you must login to Portfolio (https://portfolio.bluelock.com) and select the Datacenter/Backup tab. Navigate the hierarchy on the left-hand side of the page in order to select the specific VM you wish to restore and select the restore link to the right of the date you want to restore. This will launch a restore submission page for which you can add details for how you wish us to perform that restore. Please make note of what you would like to restore and how you would like us to deliver it (some options may incur additional support, media, delivery and handling costs).

i. Options for restore:• Full VM replacement restore• Side-by-side Full VM restore• Set of files/folders restore

ii. Delivery methods:• Temporary FTP/SFTP account• Upload ISO image to your Organization’s VDC• Burn to CD/DVD• Copied to USB hard disk

Following the request to restore a backup, a support administrator will contact you to verify the details of your restore request.

NOTE High priority restores may incur an additional cost.

section 6 – Terms and Definitions

A. OrganizationsAn Organization is a unit of administration for a collection of users, groups and computing resources. Users authenticate at the Organization level, supplying credentials established by an Organization administrator when the user was created or imported. System administrators create and provision Organizations, while Organization administrators manage Organization users, groups and catalogs.

B. Users and GroupsAn Organization can contain an arbitrary number of users and groups. Users can be created locally by the Organization administrator or imported from a directory service such as LDAP. Groups must be imported from the directory service. Permissions within an Organization are controlled through the assignment of rights and roles to users and groups.

Page 15: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 15

SERVICES FAQ

C. Virtual DatacentersAn organization virtual datacenter (VDC) provides resources to an organization. VDCs provide an environment where virtual systems can be stored, deployed and operated. VDCs also provide storage for virtual media, such as floppy disks and CD-ROMs. An organization can have multiple VDCs.

D. Organization NetworksAn organization network is contained within a vCloud Director organization and is available to all the vApps in the organization. An organization network allows vApps within an organization to communicate with each other. An organization network can be connected to an external network or isolated and internal to the organization. Only system administrators can create organization networks, but organization administrators can manage organization networks, including the network services they provide.

E. vApp NetworksA vApp network is contained within a vApp and allows Virtual Machines in the vApp to communicate with each other. You can connect a vApp network to an organization network to allow the vApp to communicate with other vApps in the organization and outside of the organization, if the organization network is connected to an external network.

F. CatalogsOrganizations use catalogs to store vApp templates and media files. The members of an organization that have access to a catalog can use the catalog’s vApp templates and media files to create their own vApps. Organization administrators can copy items from public catalogs to their organization catalog.

section 7 – Frequently Asked Questions

1. How can I get more Public IP addresses in my application?A request to increase your Public IP addresses may be done via a support ticket. IP addresses are sold in routable blocks.

2. How do I reconfigure an organization network?Organization administrators can manage and view Org networks, including services for Org vShield Edge firewalls. Some changes to Org networks are not available to Org Administrators. You may submit a support ticket to request those changes (see Section 6).

3. Why do my routes/IP addresses/hostnames keep reverting after I restart my VM?If left enabled, Guest Customization may set your network settings and administrator password to the configuration that is in the Guest Customization tab (Section 3).

4. Can I take snapshots before a risky operation?Unfortunately, snapshots are not implemented in vCloud Director yet. You may clone a Virtual Machine prior to your operation, but this must be done with the VM powered off.

5. Can I copy/clone a running VM without shutting it down?See question 4.

6. What causes the MAC address to change on my NIC?If a machine is cloned or deployed from catalog, the MAC addresses and unique identifier are regenerated by default. This option may be changed when creating a template via the When creating a vApp from this template option.

If a machine is moved between vApps, the MAC address will be regenerated.

If a vApp is powered off, the MAC addresses will be regenerated unless the option is set to retain the IP and MAC addresses.

Page 16: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

www.bluelock.com | 16

SERVICES FAQ

7. How can I keep/change the MAC address on a network adapter?If the MAC address change on a Virtual Machine is required in order to get licensing to properly operate a machine (and other extenuating circumstances). You may submit a support request during normal business hours to modify the MAC address for the network adapter. Any OS-level changes that are required as a result of changing the MAC address are not supported by Bluelock client services.

8. How does restoring a backup work?If you have opted in to backups for your VM, you may request the restore of a backup via a support ticket. You will need to provide us with a date from which you would like us to restore from and whether you would like a side-by-side, replacement or set of files restore. Restores from the prior seven days are available for immediate restore. Earlier restores may take additional processing time to retrieve the media from off-site storage.

9. How long does it take to get a tape back from Bluelock off-site storage?Any restores from more than seven days ago require us to retrieve the media from off-site storage. There are three options in retrieving the media; 3 hours, 24 hours and the following Tuesday. Additional expenses may apply depending on the speed of restore.

10. How do I expand one of my disks on my VM (hot or cold)?You may request an expansion of a hard disk via a support ticket. Please note that once this has been performed you must resize the partitions from within the operating system (see Section 3C).

11. How can I add a disk on my VM (while it’s running)?You may Hot Add a hard disk via a support ticket. Please note that once this has been performed you must rescan your SCSI adapter then partition and format your disk within your operating system (see Section 3D).

12. Can I create my own Org networks?Org networks must be created via a support ticket. Please let us know if you would like us to create isolation or Org-routed networks (see Section 2A).

13. Can I trunk to my VM and break out VLANs in it?You may trunk your VLANs, however the MTU of your network may not exceed 1500. Please note that vCloud (vSE) will not understand any tagged traffic.

14. How do I get data like licenses to a VM that has no networking setup?If you would like to get data into a machine that is not connected via network, we suggest that you create an ISO of the files and upload that to a catalog. This may then be attached to a VM via CD-ROM.

15. The console of my VM is really slow. Can this be fixed?Please ensure that the proper browser requirements have been met. Also please ensure that VMware tools are installed and up-to-date. If possible, we recommend using an application in order to stream the console over the network (e.g. RDP or VNC )(see Section A1).

Figure 9. Configure Network settings when creating a template.

Page 17: Bluelock 3.0 Best Practices and FAQ€¦ · provided a second internet circuit (internet02) containing the new IP set. NOTE If you have a Checkpoint firewall, we can route an additional

SERVICES FAQ

Bluelock, LLC. 6325 Morenci Trail, Indianapolis, IN 46268 Tel 888-402-2583 www.bluelock.com©2012 Bluelock, LLC. All rights reserved. This product is protected by U.S. intellectual property laws. Bluelock is a registered trademark of Bluelock, LLC in the U.S., and/or other jurisdictions. All other marks and names mentioned herein may be trademarks of their respective companies.

www.bluelock.com | 17

16. Can I automate my vCloud?The vCloud API is useful in automating many operations within vCloud. Bluelock Client Services does not support the vCloud API, however you may find many useful tips and resources here: http://communities.VMware.com/community/vmtn/developer/forums/vcloudapi

17. When should I use vApp networks vs. vOrg networks?A vApp network may only be used by the VM’s inside that vApp and may only communicate inside the vApp unless it is routed to an Org network (see Section 2A).

18. How do I use my own license if I have deployed a system from Bluelock’s catalog?We do not support the use of our catalog items with your licenses. If you deploy a VM from our catalog that uses a license you will be billed for it. Also, if you clone any machine that was originally from our catalog and requires a license you will billed for both machines. If you wish to use a licensed operating system with your own licenses, we recommend that you upload media to your catalog or upload a Virtual Machine image and create a template (see Section 4C).

19. What are the known issues with vCloud Director?For our current version of vCloud Director, you may find the release notes and known issues here: http://www.VMware.com/support/vcd/doc/rel_notes_vcloud_director_151.html

20. Why do we need public IPs for certain managed services?In order to monitor services within the vCloud we must have access through your WAN connection. You will also need to provide Bluelock with credentials to all Virtual Machines that are opted into managed services.