VMware Cloud services | 21 OCT 2018 Check for additions and updates to these release notes. |
VMware Cloud services | 21 OCT 2018 Check for additions and updates to these release notes. |
Whether you need to migrate to the cloud, unify multi-cloud operations, scale on demand, or build modern apps, at VMware Cloud we got you covered.
VMware Cloud brings to market unique solutions and delivers multi-cloud services that span the data center, edge and any cloud, including native cloud services. Optimized for both traditional and modern apps, VMware Cloud creates a single platform for all apps in any environment. And it unifies all environments with consistent operations and security, delivering the enterprise reliability, resiliency, and governance organizations need – while significantly reducing total cost of ownership.
With VMware Cloud Services Console, you manage your entire VMware Cloud services portfolio across hybrid and native public clouds.
See our Using VMware Cloud Services Console documentation.
This release notes outlines the upcoming changes to VMware Cloud Services console, following a recent merger with Broadcom Inc (Press Release). The following changes involve the integration of features and services from Broadcom. This integration is planned to occur in phases, ensures a smooth transition and minimizes disruption for users.
The transition to Broadcom starts on Tuesday, April 30, 2024, at 5:00 p.m. (PDT). The timeline of changes that are scheduled to take place in VMware Cloud Services console.
26th April, 2024 to 4th May, 2024 |
Users with a VMware ID account will receive email from Broadcom GTO with instructions on account activation. Users should complete this before May 6th, 2024 |
30th April, 2024 |
Following features are impacted in the VMware Cloud Services console Identity
Commerce
|
4th May, 2024 to 5th May, 2024 |
VMware Cloud Services will be in maintenance mode. You will be able to perform only read operations during this time period |
May 6th, 2024 |
User login flow will be impacted. Users with VMware ID account should have activated their Broadcom account in order to log in to VMware Cloud Services All the other changes in the console are summarized below this table. |
May 21, 2024 |
New Broadcom subscription data related to VMware Cloud Foundation will be shown in the UI, including Serial numbers assigned. |
User Authentication
The authentication systems currently used by VMware are being migrated to Broadcom. As a user, you will either be using your VMware ID or your federated account(Single Sign On) to log in to VMware Cloud Services. Your experience will change depending on the kind of user authentication flow you choose to use.
If you are using VMware ID to login:
All VMware accounts are being migrated to Broadcom's Identity Provider. Your VMware account will stop working on May 6, 2024. This means that you must activate your Broadcom account and update your profile information before you can log in using your VMware ID to VMware Cloud Services. You will receive an email from [email protected] with detailed instructions on how to activate your Broadcom account.
If you are using federated account to perform Single Sign On:
Migration of federated accounts to Broadcom Identity Provider is scheduled to take place in multiple phases. Starting May 1st, 2024 you will receive detailed instructions on the steps you need to take as an Identity Provider(IdP) Administrator to point your Identity provider to the migrated system.
Billing & Subscriptions
Usage Management
VMware Cloud Services will continue to show usage data for VMware Cloud Foundation products and services. While some services will continue to support full consumption data, including overage, there may be services where overage data will not be displayed. The transition of backend services may show stale usage data while the migrations are in progress.
Subscriptions
You will no longer be able to create, renew, upgrade, or take any action on subscriptions from within the VMware Cloud Services portal. You can only view the subscription information of your VMware Cloud Foundation products. For any additional subscription details or management, use the Broadcom Support Portal.
Self Service Federation
VMware Cloud Services portal no longer supports the Self Service Federation. You will not be able to set up new federated access to the VMware Cloud Services portal in a self-serve manner. If you want to set up federated access to VMware Cloud Services, wait until further notice.
Multi Factor Authentication
VMware Cloud Services portal no longer supports multi-factor authentication. It is now managed through the Broadcom portal. Refer to this KB article to learn more about configuring MFA in Broadcom.
Billing & Subscriptions
VMware Cloud Services portal no longer handles payment methods. Broadcom will directly manage payment methods. For more information, see Broadcom knowledge base article on How To Buy.
VMware Cloud Services portal no longer integrates invoicing and statements. If you require assistance with retrieving invoices or historical statements, raise a support ticket through the Broadcom Support Portal.
Promotional Credits is no longer available in the VMware Cloud Services portal.
Support Requests
You can raise support assistance and query resolution for the VMware Cloud Services through the Broadcom Support Portal. Existing Organization owners and members with Support Request roles can raise support requests through the portal post account activation on May 6th. To allow a new user to raise support requests, add them to your Broadcom Site ID by following the instructions in this page.
Binary Downloads
You can access and download Binaries required for the services you have purchased through the Broadcom Support Portal. Existing Organization owners and members with Software Installer roles can download the binaries based on your entitlements post account activation on May 6th. To allow a new user to download binaries, add them to your Broadcom Site ID by following the instructions in this page.
Insights
The Insights section which contained insights into users and spending will no longer be available the in Cloud Services console.
Roles
The Support User and Software Installer roles have been deprecated. The Organization Owner can no longer assign these roles to a user in the Cloud Platform Services console.
Existing API tokens associated with these roles must be revoked, and new tokens must be generated.
These updates are a result of necessary system migrations intended to improve the sustainability and maintainability of our platforms. We appreciate your understanding and cooperation as we make these transitions. For further details or support, you can visit the Broadcom Support Portal or contact our customer service team.
Set Session Timeout in Organization
You can determine session timeout intervals after which a user accessing your Organization will be logged out and required to re-log in to VMware Cloud services and Cloud Services Console. To learn more, see How do I change the session timeout setting.
Create and manage all OAuth Apps in your Organization from one place
Now users can Create and manage all OAuth Apps in their Organization from one place for more details see How do I create OAuth 2.0 apps and authenticate applications.
Introducing the Management Organization
The Management Organization is a special Cloud Services Organization that lets you manage resources and policies across Organizations from a single place. You can:
View statistics for users and services in the Member Organizations.
Set up and manage enterprise federation for your corporate domain.
Set and edit authentication policies for Member Organizations.
To learn more, see How do I work with the Management Organization.
Self-service purchase option for select cloud services
VMware Cloud Services now has a self-service subscription purchasing option for select services purchased through VMware. You can also expand the capacity of select services in your Organization. To learn more, see How to purchase a subscription.
Download current usage data
You can download a CSV file with the current usage data for your Organization by clicking the Export button at the top left corner of the Current Usage table.
Identify OAuth Apps in Your Organization by App ID or Originating Organization
You can now identify the OAuth apps created in another Organization and managed in your Organization by entering the app ID or by the name of the Organization from which it originated. To learn more, How to manage OAuth 2.0 apps.
Explore VMware APIs interactively using Developer Center
The Developer Center in VMware Cloud Services provides API interfaces that help you automate, integrate and develop features available to you in Cloud Services Console. To learn more, see How do I work with the Developer Center.
Assign Default Roles in Federated Organizations
Organization Owners of federated domains can define default organization and service roles for new users in their Organizations. This eliminates the need to manually assign roles each time a new user onboards in the Organization. For more information, see How do I assign default roles in my Organization.
View current and historical usage in the new Usage Management experience in the VMware Cloud Services Console
With the new Usage Management dashboard, customers can see how they are consuming their VMware Cloud services.
Current usage – view your current ratable usage compared to your commitment level. Discover at-a-glance if you have exceeded your commitment and when.
Usage history – explore how your usage has changed over time, with daily and hourly historical views available via an interactive chart and table.
Max usage – see your top used services at a glance that may need immediate attention.
To learn more, see How do I work with the Usage Management dashboard.
When users obtain default roles in organization through policy, they don't appear in the Active Users list
As an organization owner, you cannot view the users in your organization who have been granted default roles based on the Grant Default Roles policy and who have no other roles in the organization. These users will not display on the Active Users list in Cloud Services Console unless they request additional roles and the requests are approved. Once users with default roles obtain additional roles in the organization, organization owners can view them in the Active Users list and can grant them additional roles.
New Organization role in VMware Cloud Services: Organization Administrator
The Organization Administrator role has limited administrative access in the Organization. Users with the Organization Administrator role can only manage lower permissions for users, groups and OAuth apps.
Users in the Organization can now be assinged more than one Organization role.
Detailed Usage Summary and Notifications When Service Usage Exceeds Committed Capacity
Note: Currently, this feature is available only for vSphere+ customers.
To help customers monitor usage in their Organizations, Cloud Services Console sends daily summary notifications to Organization Owners when service usage in their Organization exceeds committed capacity. Organization Owners can modify the notification settings from the Organization > Details page in Cloud Services Console.
International Monetization
VMware Cloud Services introduces a new payment currency option: Global USD. Here's how it might affect you:
Global USD is now available as a payment method option for all organizaitons regardless of the geography of their business address.
Customers can now select a desired currency for all future transactions at the time of service onboarding. They can choose to transact in their default currency as derived from their organization address or in their pre-approved currency exception (s), which always include the GLOBAL USD option.
A new attribute region will be introduced as an optional billing account attribute. When calling on the APIs, customers might choose to pass the region value for a filtered search. The currency billing attribute is still required for API calls.
Customers can request a change of the payment currency in their organization. The change is a subject for approval by the Pricing team.
Fund Management Enhancements
Bill Pay
Bill Pay will enable users to pay for their (overage) invoices in CSP, using funds linked to their organizations. Funds used to pay for an invoice will be depleted to make partial or full payments.
Customers may now view all the last 5 transactions made to pay off an invoice.
Notifications
To increase awareness on fund activity, users (mainly org owners and billing administrators) will receive notifications when:
A payment method is linked to an organization.
A fund is set as the organization default payment method.
A fund is set as the subscription default payment method.
An orphan fund is created, and the default payment method is automatically switched to a survivor fund.
A payment is captured.
A payment has successfully been processed.
A payment has failed.
Offer Feedback for Cloud Services Console
Feedback helps us make our products better. You can now submit your feedback for Cloud Services Console directly from the product in the header.
Assign default roles in governance-enabled organizations
If Identity Governance and Administration is activated for an organization, organization owners can assign default organization and service roles to users in the organization by setting up a policy.
What's New Banner on the Cloud Services Console
The What's New carousel banner in Cloud Services Consoleintroduces VMware Cloud Services customers to the latest features and releases in the console. By clicking the Learn More link, customers are now able to deep dive into information about each new feature.
What's New information is also accessible to Cloud Services Console users under the bell notifications icon.
NIST 800-53 AC-8 Pre-Login Notification
To meet NIST 800-53 AC-8 audit requirements, organization owners can now request a custom localized notification to display to all users logging in from a specific domain. To learn more, see How do I create a NIST pre-login notification in VMware Cloud Services.
VMware Cloud Services Catalog Enhancements
A set of enhancements to VMware Cloud Services enable customers to have a smoother experience using the Cloud Services Console.
Simplified and improved Cloud Services catalog search.
Improved service request access flow for organization members and owners.
High level of granularity in service filtering. Users are now able to filter services per pricing model (Free, Paid, Paid with Free Trial) and service category.
Recommending similar services to the customers to help them address their needs.
To learn more, see the Cloud Services Catalog documentation.
Connector-less Self-Service Enterprise Federation Setup
The new connector-less federation setup option introduces an easy 3-steps configuration workflow that integrates the customer’s SAML 2.0 based identity provider with VMware Cloud Services without the need to install an on-premises component. With the connector-less setup, users of federated domains access VMware Cloud Services by authenticating directly with their corporate identity provider through SAML JIT dynamic provisioning. Customers who want to pre-provision groups and users or use native Active Directory (AD) can continue to use the 5-steps connector-based federation setup.
For more information and detailed instructions on setting up federation for your domain, see What is Enterprise Federation and How Does It Work.
Federation Setup With Enterprise Identity Provider
With enterprise federation, enterprises can use their corporate identities and credentials and link their VMware ID (My VMware) accounts to both log in to VMware Cloud Services and manage access to services/organizations/features within VMware Cloud services. With the new enhancement, customers will get self-service experience to setup enterprise federation so that any customer can setup federation without the need of engagement with VMware, thus helping them accelerate the enterprise federation setup process.
Benefits of using federated identity to access VMware Cloud Services:
Ability to use corporate credentials with VMware Cloud Services.
Ability to work with Enterprise AD Groups.
Enforce Enterprise Security policies.
Control access with Identity provider enabled Multi-Factor Authentication (MFA).
For detailed instructions on setting up federation for your domain, see What Is Enterprise Federation and How Does It Work.
Identity Governance and Administration
With Identity Governance and Administration, customers can now meet specific security compliance requirements with policy-based violation detection and reporting.
Organizational members can request time-bound service roles and organization roles.
Organization members can track the status of their access requests.
Organization owners can approve or deny organization members' access requests.
Organization owners can set policies on OAuth applications and user-generated API tokens.
Customers with federated access to VMware Cloud services can use the advanced Identity Governance and Administration features and designate organizations that allow non-organization members to request access to organization and service roles.
To learn more, see the Identity Governance and Administration documentation.
New in Billing and Subscription
Organization owners can now do the following:
View subscription details for services in their organizations, including term commitments and invoices.
Change the default payment method for their organization.
View details for a fund that is linked as a payment method in their organization by directly accessing their VMware Customer Connect profile through a link from the Manage Payment Methods page in Cloud Services Console.
Setting Authentication Policies
Organization owners can now set authentication polices to user access to their VMware Cloud services. There are two options to control access to an organization: define IP addresses or ranges that either allow or block user access from these IPs.
New Data Insights Dashboard
The new Insights tab offers a set of analytics of organization usage and end user activity in VMware Cloud services. Organization owners can now get a holistic view of their organizations in one place – from total number of users and services to total and per service spending.
New Activity Statement
You obtain a consolidated view of your monthly usage, charges and related payments by downloading the new Activity Statement from the VMware Cloud Services platform. It provides a summary and detailed breakdown for all service charges accrued by your organization throughout the billing period, the payments made against the service charges, and your funds balance. Learn more about how to read your Activity Statement.
VMware Cloud Services Audit Events
VMware Cloud Services integration with VMware vRealize Cloud Insight Cloud enables organization owners to view audit events for operations performed by VMware Cloud Services users in VMware vRealize Cloud Insight Cloud dashboard. You can now view audit events for user logins, API Tokens, OAuth Applications, and user management. Learn more about audit events in VMware Cloud Services.
Access control
View your roles and access privileges in your organization and its services.
Rate count discounts
You can now view discounts from the VMware Discount Program on your estimate costs, bills, and invoices. View your billing information by selecting Billing & Subscriptions on the Cloud Service Console.
Developer role
Assign the new developer role so that your organization members can create and manage OAuth apps to authorize the third-party apps they build to access protected resources.
Working with Groups
Groups can now be comprised of both users and enterprise groups.
Billing read-only role
Would you like another member of your organization to help you support billing activities? We have added a read-only role that organization owners can assign to organization members. This role provides read-only access to billing-related information and the option to generate usage consumption reports. Read about all our organization roles and permissions.
Working with Group
Wouldn't you like to assign roles to groups instead of assigning the same roles to individual users one at a time? As an organization owner, you can now create custom groups, determine the members that make up your groups and what roles they are assigned. Read all about working with groups.
Federated Identity Management
As an enterprise using VMware Cloud Services, you can set up federation with your corporate domain. Federating your corporate domain allows you to use your organization's single sign-on and identity source to sign in to VMware Cloud Services. Federated identity management allows you to control authentication to your organization and its services by assigning organization and service roles to your enterprise groups.
OAuth 2.0
OAuth 2.0 has arrived to VMware Cloud Services. Now you can use the OAuth 2.0 protocol to authenticate your third-party apps and give them secure delegated access to the protected resources in your organization. VMware Cloud Services supports web application access where users of your app authorize access, and server-to-server interactions where access tokens are issued directly to your app. Read all about using OAuth 2.0 with VMware Cloud services.
Display Page-Specific Help Topics
You can now access page-specific help topics by clicking the Help icon on the toolbar. You can also search for additional help content using the search box. To pin the panel in place while you continue working, click the pin in the top right corner. Extra helpful for when you need a little additional help when performing certain tasks.
Multiple API Tokens
You can now generate multiple API tokens per organization. To generate a token, click your user name and select My Account > API Tokens.
Pay by Invoice
VMware Cloud services now support the pay by invoice payment method which allows you to pay for your services in arrears. To set up pay by invoice, contact your VMware sales representative, or create a support request in the Support Center.
Group Management
As an organization owner with a federated account, you can manage role access for enterprise groups within the VMware Cloud Services Console. You can assign roles, edit roles, and remove access from services and roles.
Language and Regional Format
We have begun support for language and regional format settings.
We are currently supporting Japanese with the region Japan for onboarding cloud services, Cloud Services platform features such as Identity & Access Management, Billing & Subscriptions, and some areas of the Support Center, and also for VMware VMC on AWS pages. We will soon roll out support for additional cloud services and other languages.
You can change your display language before you onboard our cloud services, or in your account settings where you can also set your regional format.