What You Need to Know About SRM 6.0

With the launch of VMware Site Recovery Manager 6.0 here are some useful resources for people that want to learn more about the new features, roll out a fresh deployment, or who are looking to upgrade.

What’s New

Here are my posts about some key changes in SRM 6:

I’d also recommend checking out the blogs by GS Khalsa for SRM 6.0 and Jeff Hunter for vSphere Replication 6.0.

Where Can I Download the Bits?

Planning a Fresh Install or Upgrade to SRM 6?

Here are some resources you will find useful when planning the setup and deployment of SRM:

In addition to the SRM documentation I highly recommend reading the vSphere installation documentation and the following KB articles and white papers that are relevant to a multi-site and multi-product deployment:

Network Ports to Open for SRM and vSphere Replication 6.0

Because you do actually want to replicate the VMs don’t you?

What Do I Need to Know About Deploying SRM 6 in Larger Environments?

SRM 6.0 now supports up to 2,000 VMs replicated with vSphere Replication (up from 500 in the 5.8 release). SRM 6.0 continues to support protection of up to 5,000 VMs with array based replication.

What Site Topologies Does SRM 6 Support?

SRM 6.0 continues to support a variety of deployment topologies:

Where Can I Learn More?

The SRM Administration Guide is a great resource, also Eric Shank’s SRM 5.8 guide is also largely applicable to SRM 6.0. If you have any questions on SRM I’d recommend posting in the SRM community at VMTN.


SRM 6 Inventory Mapping Improvements

With the release of SRM 5.8 the user interface was significantly updated to integrate with the vSphere Web Client for the first time. As part of the update of the user interface we improved a lot of things, like being able to add paired array managers at the same time, creating reverse inventory mappings, or my personal favorite enabling rule based IP reconfiguration.

When demoing these new improvements to customers the feedback on these changes was very positive. One piece of feedback that I heard consistently (even in the SRM 5.8 beta) was the need to make it easier to create inventory mappings, especially at scale. As a result of that customer feedback one of the UI enhancements introduced in the recent SRM 6.0 release is the introduction of streamlined inventory mapping for networks and folder structures.

Introducing A New Option To Create Inventory Mappings by Matching Folder and Network Names

Picture a scenario where you have a large number of folders or networks that you want to create inventory mappings for. In SRM 5.8 that process involved you either creating the mapping one-by-one in the user interface (and being able to create the reverse mapping automatically) or automating the process via the SRM public API or VRO plug-in. Now with SRM 6.0 you can just select the root of a hierarchy you want to map and all the child elements will be automatically matched by name for you.

If you maintain consistent folder or network naming across sites this could potentially save a lot of time in creating the initial inventory mappings, especially for large inventories.

Walkthrough Auto-Mapping Folders by Name

A lot of customers use folders to organize their VM inventory, in this example the VMs are organized by department and the same naming scheme is used on both sites for consistency. Here are the two sites, Anaheim and Boulder, with all the departmental folders organized under a top level “Production” folder at each site.


When creating an inventory mapping you are now prompted to either select the existing mapping behavior where you select items manually, or the new automatic behavior based on matching names. Choose the new option and proceed to the next screen.


Now you will select the source and target “roots” for the folders you want to map. You choose the root folder on the left for the first site, followed by the target folder on the right for the second site. Then click the Add mappings button to generate the automatic mappings.


A small confirmation box will pop-up showing the results of the automatic mapping.


Next you can review the suggested mappings and go onto the next step in the mapping process.


The final step is to decide whether you want to create the reverse mappings or not for these folders. If you do you can either select them one by one, or just click the “Select all applicable” link to select them all at once and then complete the folder mapping dialog by clicking finish.


Walkthrough Auto-Mapping Networks by Name

Just as we could use name based matching to speed up the creation of inventory mappings for folders we can also do the same thing for networks.Here’s an abbreviated walkthrough showing the same approach to configuring inventory mappings of distributed switches.

First we can see that we have some distributed switches where the associated port groups have matching names across the two sites.


In the same way we could select automatic mapping mapping for folders we can select the option to automatically map our networks as well.


For the next step we select the distributed switches as the root of the mapping on both sites and click the “Add mappings” to generate the matches.


After dismissing the popup and reviewing the proposed mappings we can continue on with the rest of the wizard to completion.


If you are doing a small scale SRM deployment with just a couple of folders or port groups these enhancements are not going to be a huge deal. If however you deal with 10’s of folders or networks and have adopted consistent naming across both sites there is the potential for this to make your initial setup of SRM much more efficient.

Further Reading

SRM 6.0 Simplified Certificates

One of the improvements I was most happy to see in VMware Site Recovery Manager 6.0 was the simplified experience deploying SRM with external certificates. With earlier SRM releases external certificates were used to both authenticate the SRM instances with each other and also authenticate SRM servers to their associated vCenter instance. This dual purpose meant that there were several requirements and restrictions placed on external certificates that made it more difficult to quickly deploy SRM when using external certs.

With the integration of SRM 6.0 with SSO the certificate requirements (imposed by the dual usage of certificates) could be relaxed compared to earlier releases. These improvements will make it easier to deploy SRM with external certificates. The SRM 6.0 Installation and Configuration guide provides full details of the updated certificate requirements. A short list of the improvements taken from the guide are:

  • “If you use a custom certificate for vCenter Server and Platform Services Controller, you are not obliged to use a custom certificate for Site Recovery Manager, and the reverse.”
  • “Unlike in previous releases, there is no requirement for the certificate to also be a client certificate.”
  • “The Subject Name does not need to be the same for both members of a Site Recovery Manager Server pair.”

Another improvement in this release is that SRM 6.0 will warn customers who try and use certificates with SHA1 signature algorithms (SHA256 or stronger is recommended). Also in this release the insecure MD5 signature algorithm is no longer supported with SRM.

While improved certificate handling is a fairly small improvement (and there’s still more room to improve) I do think it is indicative of the focus that the SRM team has been putting on improving the overall operational experience of the product.

Further Reading