Category Archives: HOME

My story: How can a VMware vExpert program fuel your professional growth?

Recently I was awarded “VMware vExpert” title for the 10th year in row.


vExpert Badge

Over the years, as per my contribution to the community, I was awarded with below badges

Based on my 10+ years of professional experience, I think being part of vExpert community has had profound impact on my career and I am sure it will continue to have in future as well.

Few weeks back, I had created a video on how being part of vExpert community I was able to compound top 5-6 aspects/elements that shaped my career. I think in order to have well rounded organic professional growth, these key elements are necessary for every professional to excel. I always believe that anything good if you do consistently over the longer (considerable) period of time, it is bound to compound and it will start opening up multiple opportunities. I thought this post can be dedicated to have this video (just under 5 min) shared with you. Let me know if you resonate with 5-6 elements I talked about.

I also would like to let you know that since last 2 years, I am part of one of vExpert sub-programs i.e. VMware vExpert PRO.

Being vExpert PRO, my job is to help & mentor aspiring vExperts in my region (India) and beyond. If you are someone working as a professional on VMware technologies and aspire to be vExpert, please feel free to connect with me on linkedIn or Twitter, I will be happy to share my experience and be small part of your vExpert journey.

Further learning

  1. My VMware vExpert youtube playlist for aspiring vExperts and yes, please subscribe for valuable content in future
  2. VMware vExpert official portal

Tips for passing VMware Certified Professional exam

Towards the end of last year, I had passed VMware Certified Professional (VCP DV 2021) exam. As I shared my experience on other 2 exams I had passed i.e. VCF specialist and vSphere with Tanzu specialist, I wanted to even share my experience around VCP certification exam as well but due to various reasons my blog post focused on it got delayed. Today I thought let me complete this series with this post. Lets get going!

Tips for passing this exam as per my experience

  1. As I did for other 2 posts in this series, first thing you must be clear in your mind is that why do you want to write this exam? As I posted in my earlier posts, I love going through learning journey and exam/certifications are just one of the milestones in that journey. Of course, I align them with my short term or long term goals. I had written about Why I choose to target exams. I highly recommend you read that 7 line section. Let us now focus on VCP certification.
  2. One of the key things forced me to write VCP 2021 exam was the fact that even I had passed VCF and vSphere with Tanzu specialist exams  “VMware Certified Specialist – vSphere with Tanzu 2022” as well as VMware Certified Specialist – Cloud Foundation 20, we do not get respective badges if we do not have VCP certification (any one of the tracks)
  3. While I was forced to write VCP exam (I chose to go with VCP DCV track as that is what I have been more experienced), I am 100% glad that I did. Since my earlier VCP was on vSphere 5.0 release, going through official courses on vSphere 7.0, I realized that so much is changed over the years.
  4. As per the VCP DCV certification criteria posted on official site, we are required to undergo one of the trainings but since official site recommended 2 courses (while one is enough), I decided to complete 2 courses i.e. VMware vSphere: Install, Configure, Manage [V7] – On Demand and VMware vSphere: Optimize and Scale [V7] – On Demand . As vSphere has been one of the primary products I work on, I thought let me deep dive on the few areas of the vSphere those I did not get enough on the job experience. If you are new to vSphere, joining live class is better over on demand class as you can focus 100% all the time over 5 days but if you have time constraints, then on demand works well.
  5. Since I completed both the courses, it was quite comprehensive preparation. Both of these courses have many modules and lessons, going through them required lot of patience but I enjoyed. In fact, it was very close to how I run half marathon or 100 km cycle ride, I think its same mindset and resiliency required during such learning journey. If you are already familiar with particular modules, at times you can speed up with 1.5x or 2.0x speed.
  6. I was fascinated by the amount of details each module around vSphere. In fact, being one of the senior engineers in my team, it has been helping me lot as more often than not I now need to think vSphere as a complete product and not few components within it as it was the case in the past as a junior engineer. Comprehensive preparation helping me when I work on other integrated solutions/offerings such as VCF, vSphere with Tanzu, VMC as well.
  7. Apart from going through 2 courses I mentioned, solving small mock tests at the end of each module and my existing experience working on vSphere platform, I need not have to go through anything else.
  8. After passing the exam, I personally felt both courses are not required. If you have some hands on experience on vSphere platform, you should be good with either VMware vSphere: Install, Configure, Manage [V7] – On Demand or VMware vSphere: Optimize and Scale [V7] – On Demand .
  9. If you have read my blog post series on VCF, Tanzu exam, tips posted there could be handy as well. I would suggest to skim through them as both of these posts are very well received by VMware community i.e. VCF specialist and vSphere with Tanzu specialist
  10. When I passed VCP DCV exam, within few days VMware issued all the badges i.e. VCP DCV, VCF specialist & vSphere with Tanzu in one go and it was great feeling to have these badges. You can view all the VMware badges I have received so far.

What is next

Below are few of the certifications I am looking forward to achieve.

  1. Newly launched VCP-AM : i.e. VCP on Application Modernization
  2. Certified Kubernetes Administrator i.e. CKA
  3. VCP NV

Happy learning ! I hope this post was helpful, please share with others as appropriate and you can follow me on Twitter for upcoming posts or feel free to DM me for any queries.

Tips for passing vSphere with Tanzu specialist exam

In the past, I had shared preparation tips/guidance on VMware cloud foundation (VCF) and VMware Cloud on AWS specialist exams. In this post, I am going to share preparation guidance for passing vSphere with Tanzu specialist exam. In fact, recently couple of VMware community friends reached out to me to understand what it takes to be “vSphere with Tanzu” specialist, I thought same would be useful to larger VMware community, hence this post. Let’s get going..

Below is what VMware official statement says about specialist badge holders, how cool is that !

The VMware vSphere with Tanzu 2021 specialist badge holder knows about how vSphere with Tanzu can be used to orchestrate the delivery of Kubernetes clusters and containerized applications in a vSphere environment. This badge holder possesses extensive knowledge on deploying and managing VMware vSphere® with Tanzu.

My experience and tips

  1. First thing you must be clear in your mind is that why do you want to write this exam. For me, getting comprehensive view of the vSphere with Tanzu from customer/user perspective was important as it is directly aligned with one of the key focus areas in my day to day office work . Also, vSphere with Tanzu is one of key foundational areas under bigger Tanzu portfolio. As I posted in my earlier posts, I love going through learning journey and exam/certifications are just one of the milestones in that journey. I had written about Why I choose to target exams. I highly recommend you read that 7 line section. Let us now focus on vSphere with Tanzu specialist exam.
  2. There is a 3 day official course on “vSphere with Tanzu” available on demand or live as well. On demand course is available on customer connect portal.
  3. If you are working at VMware, I think you have free access to customer connect portal. In addition, course and lab material is available on internal vault portal. Please reach out to me if you need help on the same.
  4. One important thing to note that passing this exam itself does not require you to undergo the official course. If you have enough hands on experience configuring vSphere with Tanzu with NSX-T & also with vSphere Networking (with AVI LB or HAproxy), you can go ahead and write this exam.
  5. When I say hands-on experience, it is about deploying & configuring from scratch and have performed all day 1 and day 2 operations as a vSphere admin as well as Dev/Devops persona.
  6. Since my focus at job was also on vSphere with Tanzu, I had enough hands on experience but I chose to undergo 3 days training as well, which definitely helped me connecting all the dots in my overall understanding of the solution. However, if you could not undergo the course due to various reasons, it is all right to directly write the exam as long as you already have gained enough hands on experience
  7. While writing exam itself does not require you to undergo course but in order to achieve the certification “VMware Certified Specialist – vSphere with Tanzu 2022” , you must be done with course as well as you must be VCP-DCV certified.
  8. In my case, I first completed the on demand course & passed this exam. Since my existing VCP was expired, I got re-certified on VCP 2021 (Last time I had passed VCP was whopping 9 years back when I was intern) to satisfy certification requirement.
  9. Since I completed my certification requirements in late last year, my certification was vSphere with Tanzu 2021 but there is no difference between 2021 and 2022 from course content perspective at the moment.
  10. Finally one fine day schedule the exam through PearsonVue portal, you should be good. I usually prefer scheduling exams early in the morning to avoid any distractions during exam time. All the best !

What is next?

If you already passed vSphere with Tanzu specialist and now looking for next learning milestone around VMware Tanzu or Kubernetes in general , I would suggest below 2 certifications.

  1. Newly launched VCP-AM 2022 : i.e. VCP on Application Modernization
  2. Certified Kubernetes Administrator i.e. CKA

I hope this post was helpful, please share with others as appropriate and follow me on Twitter for upcoming posts or feel free to DM me.

My learning journey: VMware Cloud Foundation & tips for VCF specialist exam

VMware Cloud Foundation (VCF) architecture is the backbone of VMware Cloud. I had worked on VMC on AWS, which is VMware’s hybrid cloud offering but I never had an opportunity to deep dive into VCF as a product, the platform for Multi-cloud and Modern apps. Recently I started exploring more on VCF and I thought to start my learning journey with VMware Cloud Foundation specialist exam as one of the milestones. Learning on why/how customers plan, design, deploy VCF (a SDDC stack)  & perform day1, day2 ops really helped me appreciate what VCF brings to the table. I loved how VCF orchestrates and simplifies SDDC stack deployment and its management. In this post, I am sharing super cool learning resources I went through so far, why I chose to write VCF specialist exam and tips to pass it.

Learning resources

Sr noDescriptionLink/URLsNumber of videosTotal time taken Comment
1VCF overview short videosVCF short videos1250 minIf you already know vSphere with Tanzu, skip 3 videos
2VCF technical deep dive with simulated UI hands onVCF deep dive880 minHCX and vRealize related videos you may skip as below we have detailed ones
3VCF life cycle workflows with simulated UI hands onVCF LCM workflows635 min
4VCF FAQsFAQsNA60 minThis is great read
5VCF solutions: HCX, vRA : simulated labs
vSphere with Tanzu session
vRA
HCX
Tanzu
130 minNote that HCX and vRA are simulated labs (UI hands on), kind of UI walkthrough. I really loved and only Tanzu is session
6VMworld 2020 and 2021 sessions VMworld 2020
VCF networking
VCF storage
Operational processes for VCF
VCF remote/edge clusters
VCF and vSAN stretched cluster
VCF and vVols
VMworld 2021
NSX design and operational recommendations for VCF with Tanzu
HCX with VCF
VCF tips and tricks from the trenches
9each video approx. 40 min 1. You will have to login with your free VMworld account
2. VMworld sessions definitely provide that real time best practices, challenges, customer perspective/view

7VCF official courses VCF plan and deploy : 2 days
VCF management and operations: 3 days
NA2-3 full days with labsThese courses will provide you comprehensive view of the VCF, super cool
8Setting up VCF yourself on a ESXi hostAutomated VCF Lab Constructor (VLC)
Part-1
Part-2
VLC session
NA1 dayTime taken is 1 day for entire preparation and then automatic VCF deployment
Download link: http://tiny.cc/getVLC and VLC slack channel: https://tiny.cc/getVLCSlack
9VMware official HOLVCF hands on LabNA3-4 hrsIf you can not setup your own lab as posted in #8, you can manage with HOL

Tips on passing this exam : my experience

  1. First thing you must be clear in your mind is that why do you want to write this exam. For me, getting comprehensive view of the VCF & hands on experience were aligned with my recent day to day focus in office. Also, VCF is one of the key focus areas for VMware as its the foundation for Multi-cloud, hence I thought let me target this exam to motivate & streamline my learning journey. I had written about Why I choose to target exams. I highly recommend you read that 7 line section.
  2. As mentioned in 1st point, idea is not only to get cool badge or get certified but also acquire VCF as a skill, hence I first started with top 5 sections/rows listed under Learning resources above. Overall it would take just somewhere around 200 min to 300 min of your time. Few things would be little repeated but it is worth to have that repetition.
  3. then I started with VMworld sessions listed in row #6. There are 9 sessions including 3 sessions from VMworld 2021 as well. You can choose to set the speed 1.25x or more as per your comfort
  4. At this stage, I was looking for getting more hands on experience deploying VCF on my own ESXi host and this is where VLC (VCF Lab Constructor) helped me immensely. I must say VLC team (specially Ben , Heath & SDDC commander) has done great work not only with building this automation tool but also building thriving VLC community. Beauty is VLC bits get updated with every new VCF release. Refer section #8 above for more articles around it.
  5. In each of the videos, you might see some VCF basic concepts are repeated but it is worth. You can always speed up the video or skip as needed.
  6. If you can not have your own lab, you can manage with VMware official HOL as listed in row #9. Some of this is already covered in simulated UI walkthroughs. However, playing around your own lab as usual gives you better learning experience.
  7. At this stage, I really started thinking about VCF exam and scheduled it around 2 weeks before . Please make sure you go through exam official pages here and here to clearly understand the certification requirements and exam objective/syllabus. You will be scheduling this exam from mylearn portal and then it will re-direct to “pearsonVUE” portal.
  8. There are 2 things: One is passing VCF specialist exam directly and another is completing all certification requirements to be “VMware Certified specialist : Cloud Foundation 2021“. You can decide how do you want to go about. In my case, I tried registering for VCF plan and deploy official 2 days course and I was lucky to get a seat being at VMware. Completing this course including labs made me ready for the exam and my confidence was high at this stage. There is another 3 days course as listed in row #7 but I did not register for it.
  9. I need not revise anything specifically before 2-3 days of scheduled date, it was all about the learning journey over 6-8 weeks made things fall in place. On 1st June, 2021 morning 7 AM IST, I had passed this exam. Of course, learning does not end with passing this cool exam but its continuous.
  10. Further, passing this exam did not award the VCF specialist badge as VCP 2021 was another requirement that I had to complete as my existing VCP certification was expired. I eventually passed VCP 2021 last week as well and earned this badge

Note that learning resources shared here are based on my own experience. There could be some other useful resources but I strongly believe these are gold resources for anybody who is just starting with VCF. In future I will update this blog post with VCF focused cool blogs & hands on lab resources as I experience them.

I hope this post was helpful. If it helped you, please make sure you share it with others. Also, please stay tuned for similar articles on VCP 2021 and vSphere with Tanzu exam/certifications.

Happy learning ! If you want to get updates on future posts, follow me on Twitter.

Deep dive: New REST APIs to manage VM service and Namespace self service

Couple of weeks back vCenter server 7.0 U2a (a monthly patch focused on vSphere with Tanzu) released with 2 super cool features. In this post, I would like to take you through new REST APIs introduced as part of these features & key notes around how these features/APIs behave.

Virtual Machine Service

As per me, this feature is one of the key features (like vMotion) in the history of vSphere. In brief, it enables managing virtual machines using Kubernetes control plane. With this feature, user can define desired state of VMs, virtual networks, virtual storage device. How cool is that if you can create vms (with customization) using simple kubectl command like “kubectl apply -f vm.yaml” ! To learn more about it, I highly recommend you to read this official deep dive blog and associated video.

Namespace Self-Service

Prior to this release, Supervisor namespace life cycle was completely managed by the vSphere admin. It was limiting the flexibility that k8s user had. With this feature, k8s user has ability to manage the life cycle (create/delete) of their own Supervisor namespaces while the resource constraints wrt cpu, mem, storage policy are still controlled by vSphere admin. Simply k8s user can run ” kubectl create ns ” to create their own namespaces in order to deploy k8s objects such as vSphere pods, guest clusters (aka Tanzu kubernetes cluster/TKC ) and now with this release VMs as well. Note that if this feature is not activated in your environment, vSphere admin can continue to manage Supervisor namespaces as it was prior to this release. To learn more about this feature, please go through this quick and cool blog post.

New vSphere with Tanzu APIs in action

If you are completely new to vSphere with Tanzu (specifically Supervisor cluster APIs exposed by wcpsvc service running on vCenter server) REST APIs, I highly recommend you to first read “Introduction to Supervisor cluster REST APIs ” post.

VM-class

VM-class is nothing but t-shirt sizes available for deploying vSphere pods/TKC/VMs under namespace created by k8s user or the traditional Supervisor namespaces (the ones created from H5C or REST API) created by vSphere admin. K8s user needs to pass these classes as part of TKC or VM creation yaml manifest file. Below is how we create custom VM class.

POST: https://{api_host}/api/vcenter/namespace-management/virtual-machine-classes
{
"cpu_count": 2,
"cpu_reservation": 0,
"description": "my vm class",
"id": "custom-class",
"memory_MB": 1024,
"memory_reservation": 0
}

Here is REST API super cool documentation for managing VM-class.

Associating VM-class and Content library to namespace

This is one of the super important operations must be performed by vSphere admin i.e. Every Supervisor namespace created either by k8s user through namespace self-service or namespace created by vSphere admin must have associated VM-class and Content library configured.
In order to configure this association, existing create namespace API is modified. Let’s see how to update existing namespace with a VM-class we created above and couple of existing content libraries that I had created already.

PATCH: https://{api_host}/api/vcenter/namespaces/instances/{namespace}
{
"vm_service_spec" : {
"vm_classes" : ["best-effort-xsmall","custom-class"
],
"content_libraries" : [
"62537201-8194-4d98-aea3-47b95f17077b",
"14268a2c-847b-4f84-9a1a-a97b524e263b"
]
}
}


“vm_classes”: They are simply the name (id) of the vm class. I have passed one custom vm-class and one default vm-class.
“namespace”: It is name of the existing Supervisor namespace to be updated.
“content_libraries” : These are content library ids that we can fetch using content library GET API. I have passed 2 content libraries one for VM service OVA images and another is for TKC/guest cluster OVA images

Here is REST API super cool documentation for managing supervisor namespaces

Key notes on VM-class/CL association

  1. VM class & Content library association with new supervisor namespaces is required for both TKC/Guest clusters as well as VMs created through VM service. However, TKC/Guest clusters content library can be configured at Supervisor cluster level as well (as it is from beginning)
  2. If Supervisor namespace is created prior to this release, all such namespaces will have all default VM-classes configured automatically, hence it will not impact any new or old TKC/Guest clusters. This automatic association happens as part of first k8s version upgrade at Supervisor cluster level
  3. In future releases, I personally expect associating VM-classes and content library gets further simplified so that vSphere admin is not forced to monitor new namespaces getting created and associate these mandatory constructs accordingly.

Namespace self-service workflows

As shown in this post, we need to activate this feature with setting controls such as cpu, mem, storage policy & users/groups. Let’s take a look at how to configure this using API. This is API doc for same i.e. Create a self-service template and further activate it.

POST: https://{api_host}/api/vcenter/namespaces/namespace-self-service/{cluster}?action=activateWithTemplate
{
"permissions": [ {
"domain": "vsphere.local",
"subject": "devops1",
"subject_type": "USER"
},
{
"domain": "vsphere.local",
"subject": "devops-group",
"subject_type": "GROUP"
}
],
"resource_spec": {
"cpu_limit": 10000,
"memory_limit": 20480,
"storage_request_limit": 204800
},
"storage_specs": [ {
"limit":104800,
"policy": "7327e17f-15fb-47a6-a82e-e7ec54839b59"
}
],
"template": "my-first-template"
}

“permissions”: Here we need to configure SSO users and groups. User/Group can come from vsphere.local or any custom identity source. Note that administrators group is configured by default, we do not explicitly need to configure any administrator.
“resource_spec”: These are the resource limits for all the namespace self service created by configured k8s users
“storage_specs”: The storage policies that namespace self service will get storage from.
“template”: Name of the template. Note that it must not have any space the string.

Here is REST API super cool documentation for managing self-service namespaces

Introduction of “OWNER” role

  1. There is new Supervisor namespace role is introduced i.e. OWNER. Earlier, we had only “EDIT” and “VIEW” roles. Note that this role is specifically introduced as part of Namespace self service feature. Users are not expected use it directly from H5C and even if they do, it will behave same as “EDIT” role from user standpoint.
  2. When k8s user creates supervisor namespace from kubectl after activating Namespace self service feature, every namespace by default will get this role. This enables create/delete these namespaces from kubectl itself.

Key notes on namespace self service APIs

  1. Currently H5C UI supports only one storage policy but using API you can configure multiple storage policies, so namespaces get multiple storage policies get configured automatically though Self-service template might show only one policy.
  2. If you see closely, there is storage storage “limit” param under “resource_spec” as well “storage_specs”. The limit in storage_specs applies to individual storage policy while limit in “resource_spec” is storage limit on all the namespace self service created by k8s user.
  3. Another important behavior is: above API can be used for 2 operations. One for initially creating the template and activating it. Second is updating the same template (only exception I see is we can not change the name of the template once created initially). Usually update operation is done via PATCH API but this API is an exception as both operations are done via POST API.
  4. Note that there are few more separate APIs for managing self-service namespace templates , here you can update the template with PATCH API.
  5. Currently, per supervisor cluster only one template is supported. This could be the reason name of the template need not be changed once its created. UI also does not provide an option for setting the name. If you activate this feature for the first time from H5C UI, template name would be “default”. In future release, we can expect support for multiple templates.
  6. One more important factor is that since currently only one template is supported, once you create template for the first time, there is no way you can delete the template but user can only update its configuration or simply deactivate this feature it.
  7. How do we know whether given namespace is created by k8s user or vSphere admin? When we make GET call on given namespace, it provides one Boolean property i.e. self_service_namespace
  8. When supervisor cluster is not in running state, user is not expected to activate/deactivate or update the template. Cluster may not be in running state when Supervisor cluster upgrade is is in progress or cluster is not in good state due to some issue. Even if you do, these ops will be will keep waiting for cluster to get into running state and the proceed as expected.

Automating above ops using SDKs

  1. It is important to notice that probably 70U2a release is first vSphere patch release, which introduces new APIs or modification to the existing API (specially vSphere with Tanzu REST APIs). Usually only major or update release had such changes.
  2. In order to write automation around above workflows, you must upgrade your SDK to the latest available on github.
  3. You can simply refer my post on Automating supervisor cluster operations through Java SDK. I highly encourage you contribute more samples around these features. Java SDK documentation for these ops are here: VM-class , Self-service namespace & templates
  4. Apart from Java, there is official python SDK as well.

VM operator

The VM service (even Namespace self-service) we explored above is specifically driven by wcpsvc service running on vCenter server. There is another key VM service kubernetes side component (runs as part of Supervisor cluster) as well i.e. VM operator. Beauty is that this critical component is completely open sourced. How cool is that!

Further learning

You can learn more around vSphere with Tanzu & its APIs here
Detailed post on VM service by Frank and Cormac here and here
Cool post by William here on how VM service capabilities can be used for cool use-case like Nested-ESXi.


If you have any query or comment, please feel free to post me on Twitter