Host Profiles ensure all hosts in the cluster have the same configuration.

Procedure

  1. Log in to vCenter Server by using the vSphere Web Client.
    1. Open a Web browser and go to https://sfo01w01vc01.sfo01.rainpole.local/vsphere-client.
    2. Log in using the following credentials.

      Setting

      Value

      User name

      administrator@vsphere.local

      Password

      vsphere_admin_password

  2. Create a Host Profile from sfo01w01esx01.sfo01.rainpole.local
    1. In the Navigator, select Hosts and Clusters and expand the sfo01w01vc01.sfo01.rainpole.local tree.
    2. Right-click the ESXi host sfo01w01esx01.sfo01.rainpole.local and choose Host Profiles > Extract Host Profile.
    3. In the Extract Host Profile window, enter sfo01-w01-consolidated01 for the Name and click Next.
    4. In the Ready to complete page, click Finish.
  3. Attach the Host Profile to the consolidated cluster.
    1. In the Navigator, select Hosts and Clusters and expand the sfo01w01vc01.sfo01.rainpole.local tree.
    2. Right-click on the sfo01-w01-consolidated01 cluster and choose Host Profiles > Attach Host Profile.
    3. In the Attach Host Profile window, click the sfo01-w01-consolidated01 Host Profile, select the Skip Host Customization checkbox and click Finish.
  4. Create a host customization profile for the hosts in the consolidated cluster.
    1. In the Navigator, select Policies and Profiles.
    2. Click Host Profiles, then right click sfo01-w01-consolidated01 and choose Export Host Customizations.
    3. Click Save.
    4. Choose a file location to save the sfo01-w01-consolidated01_host_customizations.csv file.
    5. Open the sfo01-w01-consolidated01_host_customizations.csv in Excel.
    6. Edit the Excel file to include the following values.

      ESXi Host

      Active Directory Configuration Password

      Active Directory Configuration Username

      NetStack Instance defaultTcpipStack->DNS configuration

      Name for this host

      sfo01w01esx01.sfo01.rainpole.local

      ad_admin_password

      ad_admin_acct@sfo01.rainpole.local

      sfo01w01esx01

      sfo01w01esx02.sfo01.rainpole.local

      ad_admin_password

      ad_admin_acct@sfo01.rainpole.local

      sfo01w01esx02

      sfo01w01esx03.sfo01.rainpole.local

      ad_admin_password

      ad_admin_acct@sfo01.rainpole.local

      sfo01w01esx03

      sfo01w01esx04.sfo01.rainpole.local

      ad_admin_password

      ad_admin_acct@sfo01.rainpole.local

      sfo01w01esx04

      ESXi Host

      NetStack Instance vmotion->DNS configuration

      Name for this host

      sfo01w01esx01.sfo01.rainpole.local

      sfo01w01esx01

      sfo01w01esx02.sfo01.rainpole.local

      sfo01w01esx02

      sfo01w01esx03.sfo01.rainpole.local

      sfo01w01esx03

      sfo01w01esx04.sfo01.rainpole.local

      sfo01w01esx04

      ESXi Host

      Host virtual NIC sfo01-w01-vds01:sfo01-w01-vds01-Management:management->IP address settings

      Host IPv4 address

      Host virtual NIC sfo01-w01-vds01:sfo01-w01-vds01-management:management->IP address settings

      SubnetMask

      sfo01w01esx01.sfo01.rainpole.local

      172.16.31.101

      255.255.255.0

      sfo01w01esx02.sfo01.rainpole.local

      172.16.31.102

      255.255.255.0

      sfo01w01esx03.sfo01.rainpole.local

      172.16.31.103

      255.255.255.0

      sfo01w01esx04.sfo01.rainpole.local

      172.16.31.104

      255.255.255.0

      ESXi Host

      Host virtual NIC sfo01-w01-vds01:sfo01-w01-vds01-vSAN:vsan->IP address settings

      Host IPv4 address

      Host virtual NIC sfo01-w01-vds01:sfo01-w01-vds01-vSAN:vsan->IP address settings

      SubnetMask

      sfo01w01esx01.sfo01.rainpole.local

      172.16.33.101

      255.255.255.0

      sfo01w01esx02.sfo01.rainpole.local

      172.16.33.102

      255.255.255.0

      sfo01w01esx03.sfo01.rainpole.local

      172.16.33.103

      255.255.255.0

      sfo01w01esx04.sfo01.rainpole.local

      172.16.33.104

      255.255.255.0

      ESXi Host

      Host virtual NIC sfo01-w01-vds01:sfo01-w01-vds01-vMotion:vmotion->IP address settings

      Host IPv4 address

      Host virtual NIC sfo01-w01-vds01:sfo01-w01-vds01-vMotion:vmotion->IP address settings

      SubnetMask

      sfo01w01esx01.sfo01.rainpole.local

      172.16.32.101

      255.255.255.0

      sfo01w01esx02.sfo01.rainpole.local

      172.16.32.102

      255.255.255.0

      sfo01w01esx03.sfo01.rainpole.local

      172.16.32.103

      255.255.255.0

      sfo01w01esx04.sfo01.rainpole.local

      172.16.32.104

      255.255.255.0

    7. When you have updated the Excel file, save it in the CSV file format and close Excel.
    8. Click sfo01-w01-consolidated01 and select the Configure tab.
    9. Click the Edit Host Customizations button.
    10. In the Edit Host Customizations window select all hosts and click Next.
    11. Click the Browse button to use a customization file, locate the sfo01-w01-consolidated01_host_customizations.csv file saved earlier and select it and click Open then click Finish.
  5. Remediate the hosts in the consolidated cluster.
    1. Click the Monitor tab and click Compliance.
    2. Select sfo01-w01-consolidated01 and click the Check Host Profile Compliance button.
    3. Select sfo01w01esx02.sfo01.rainpole.local, click the Remediate host based on its host profile button, and click Finish on the Ready to complete window.
    4. Select sfo01w01esx03.sfo01.rainpole.local, click the Remediate host based on its host profile button, and click Finish on the Ready to complete window.
    5. Select sfo01w01esx04.sfo01.rainpole.local, click the Remediate host based on its host profile button, and click Finish on the Ready to complete window.
  6. Verify the Host Compliance.
    1. Click the Monitor tab and click Compliance.
    2. Select sfo01-w01-consolidated01 and click the Check Host Profile Compliance button.

      All hosts should show a Compliant status in the Host Compliance column.

  7. Schedule nightly compliance checks.
    1. On the Policies and Profiles page, click sfo01-w01-consolidated01, click the Monitor tab, and then click the Scheduled Tasks subtab.
    2. Click Schedule a New Task then click Check Host Profile Compliance.
    3. In the Check Host Profile Compliance (scheduled) window click Scheduling Options.
    4. Enter sfo01-w01-consolidated01 compliance Check in the Task Name field.
    5. Click the Change button on the Configured Scheduler line.
    6. In the Configure Scheduler window select Setup a recurring schedule for this action and change the Start time to 10:00 PM and click OK.
    7. Click OK in the Check Host Profile Compliance (scheduled) window.