If your SDDC Manager appliance does not have a connection to the internet, you can run the Async Patch Tool from a computer that does. Download an async patch, copy the patch and the Async Patch Tool to the SDDC Manager appliance, and enable the patch. You can then use the SDDC Manager UI to apply the patch to all workload domains.
Prerequisites
- A Windows or Linux computer with internet connectivity (either directly or through a proxy server) for downloading the bundles.
- The computer must have Java 8 or Java 11.
- A Windows or Linux computer with access to the SDDC Manager appliance for uploading the bundles.
- Refer to KB 88287 to ensure that the async patch is supported with your version of VMware Cloud Foundation. Contact VMware Support if you have questions about the available async patches and which versions of VMware Cloud Foundation support them.
- You must have the latest version of the Async Patch Tool.
Note: If an existing or older version of the Async Patch Tool exists in the directory, you will need to remove these files from both the Linux or Windows computer and the SDDC manager before downloading the latest version of the Async Patch Tool.
rm -r <AP Tool directory>
rm -r <outputdirectory>
The default directory is /home/vcf/apToolBundles if outputDirectory was not specified when the Async Patch Tool was previously run.
- Configure TCP keepalive in your SSH client to prevent socket connection timeouts when using the Async Patch Tool for long-running operations.
- The Async Patch Tool is supported with VMware Cloud Foundation 4.2.1 and later. This release also supports ESXi and VxRail Manager patching of VMware Cloud Foundation on VxRail.
Procedure
What to do next
For versions of VMware Cloud Foundation earlier than 5.2, new workload domains will not include async patch versions of vCenter Server or NSX Manager. Use this procedure to apply the async patch(es) to the new workload domain.
Note: After you update the hosts in a workload domain to an async patch version of ESXi, any new hosts that you add to the workload domain must use the async patch version of ESXi and not the version listed in the
VMware Cloud Foundation BOM.