Archive
#Citrix #XenServer Multiple Security Updates released
Severity: Medium
Description of Problem
A number of security vulnerabilities have been identified in Citrix XenServer. These vulnerabilities affect all currently supported versions of Citrix XenServer up to and including version 6.1.
The following vulnerabilities have been addressed:
• interrupt remap entries shared and old ones not cleared on AMD IOMMUs (CVE-2013-0153)
• oxenstored incorrect handling of certain Xenbus ring states (CVE-2013-0215)
• Linux netback DoS via malicious guest ring (CVE-2013-0216, CVE-2013-0217)
• Linux pciback DoS via not rate limited log messages (CVE-2013-0231)
What Customers Should Do
Hotfixes have been released to address these issues in all supported versions and update levels of Citrix XenServer. Citrix recommends that customers using Citrix XenServer identify and apply all the hotfixes that relate to their deployed versions.
Customers using XenServer with AMD CPUs that pass through PCI devices (e.g. using the GPU passthrough feature) should review the hotfix release notes below for more information relevant to their specific deployments.
Continue reading and download updates here!
//Richard
New #Citrix #Visio Stencils – via @djfeller – #XenApp #XenDesktop #XenClient #XenServer
Thanks a lot for the great work you did on Project Accelerator, and for sharing the Visio stencils!! 🙂
By spending a little time in the Assess phase, Project Accelerator creates this awesome looking diagram
The truth is, this diagram took many, many, many revisions. We wanted to create something that was easy to follow while providing the most important information people wanted to see, which included IOPS, servers, VMs, storage space, desktop images, infrastructure components, and so much more. It took a few revisions before I had something in Visio that did all of that. Then we gave my diagram to Marta Guerra, a senior designer on the Project Accelerator team. She turned the diagram into something easy to follow and very clean with new images/icons for all of the components. I’m still impressed. I know many of you are too because you’ve asked for the Visio stencils.
Unfortunately, Project Accelerator diagrams aren’t done in Visio, but that didn’t stop us from giving you what you wanted. With the help of Marta, I’ve been able to turn these images into a new set of Citrix Visio Stencils.
Get them here!
//Richard
PVS support in XenServer 6.1 – via @_POPPELGAARD – #XenServer, #Citrix, #PVS
Good blog post from Thomas Poppelgaard!
And this is something that many have waited for, either they upgraded and ran into the issues and had to revert back to 6.0.2… but now it’s fixed! 🙂
Citrix have released Hotfix XS61E009 & XS61E010 for XenServer 6.1 and now you are able to have Citrix Provisioning Services with XS 6.1 and use VVS.
I have been waiting for this for a while.
Issues Resolved In This Hotfix XS61E009
- Virtual Machines (VMs) with out of date XenServer Tools, may not be flagged as “out of date” in XenCenter. This hotfix resolves this issue and enables customers to be notified in XenCenter when new XenServer Tools are available.
- Booting a Citrix Provisioning Services (PVS) target device using a Boot Device Manager (BDM) image can take an extended time to complete. This hotfix resolves this issue.
Issues Resolved In This Hotfix XS61E010
- Customers using XenServer Platinum Edition to license Citrix Provisioning Services (PVS) may find that one PVS license per VM is checked out, rather than one PVS license per XenServer host. This may lead to a shortage of PVS licenses and an inability to provision VMs. Installing this hotfix along with CTX135672 – Hotfix CPVS61016 (Version 6.1.16) – For Citrix Provisioning Services 6.1 – English resolves this issue.
- Attempts to shut down Microsoft Windows Vista and later VMs can cause intermittent blue screen errors, with a "STOP: 0x0000009f..." error message.
- Adding more than eight NICs to Microsoft Windows Vista and later VMs, using the xe CLI can lead to a blue screen error on reboot.
- Copying data to a Microsoft Windows 2003 VM can cause the VMs to hang and lead to a grey screen error.
- When Dynamic Memory Control (DMC) is enabled, attempts to migrate Microsoft Windows XP and later VMs using XenMotion can cause the VMs to hang and lead to blue screen error.
- When the Citrix Xen Guest Agent service is running, Cut and Paste will not work between a XenDesktop virtual desktop and the endpoint device.
- Microsoft Windows XP and later VMs may hang during the boot process and may have to be forced to reboot.
- Attempting to install or upgrade the XenServer Tools on Microsoft Windows Vista and later VMs, which do not have access to a paravirtualized or an emulated network device can cause the installation process to hang.
- Manually installing the Legacy XenServer Tools without changing the device_id to 0001 can result in a "STOP: 0x0000007B..."error when rebooting a Windows VM. After installing this hotfix, customers will not be able to manually install the Legacy XenServer Tools by running xenlegacy.exe…
Continue reading here!
//Richard
Jan. Edition of XenDesktop Technical Newsletter Now Available – #XenDesktop, #Citrix
It’s out again with more exciting topics! Check it out!!!
Using XenDesktop? Then you need to get the XenDesktop Technical Newsletter! The newsletter is comprised of the best technical resources from across Citrix Services: Consulting, Technical Support, Education, and Technical Readiness. In its third year the newsletter is designed to help customers run their XenDesktop optimally and get more out of their investment in Citrix desktop virtualization. And its FREE!
I am pleased to announce that the January 2013 edition of the newsletter is now available.
Check out the archive page, where you can access both the current and past issues, as well as subscribe to the FREE monthly newsletter.
The January edition of the newsletter is packed with great content, including:
- Optimal XenApp 6.5 VM Configuration (Blog)
- Introduction to the new Project Accelerator (Blog)
- Deploying XenApp 6.5 using PVS (Blog)
- Insider Troubleshooting tips for Administrators (eBook)
- Whats new with Excalibur (Blog)
- Top Knowledge Center content for December 2012 (Articles, hotfixes, whitepapers, etc…)
- How to configure Access Gateway 5 standalone for use with XD5 (tech note)
- XenDesktop Tools & Hotfixes
- And much more.
If you have any..
Continue reading here!
//Richard
NetApp Virtual Storage Console for XenServer – #XenServer #CitrixSynergy #NetApp #VCS
This is looking really nice! Have a look at the capabilities of the NetApp VSC plugin for XenServer demo video;
Citrix Synergy 2012 demo: NetApp VSC 1.0 for Citrix XenServer – SR management
Virtual Storage Console reduce cost and complexity with integrated, end-to-end storage management for Citrix infrastructures. Improve administrative efficiency for both your Citrix and storage administrators.
So if you’re a NetApp shop why not try it out?
It’s really nice that you can do most of the config from the XenCenter console! I’m right now doing the Cisco UCS and XenDesktop lab here at Synergy and playing around with it and it’s neat! Once the plugin is installed you can interact directly with it from the XenCenter console.
Here you can configure the preferences in a simple way (even though the User Preference console/plugin isn’t the coolest looking tool)!

HEADS UP – PVS and XenServer compatibility issues
UPDATE!!! SEE THIS POST FOR MORE INFORMATION AND PVS SUPPORT ON XENSERVER 6.1; http://richardegenas.com/2013/01/22/pvs-support-in-xenserver-6-1-via-_poppelgaard-xenserver-citrix-pvs/
Ok, this is something that many may be aware of but I’m sure not all of you out there! Thanks Per Liif for the inputs to this little blog post!!
So what’s the issue? Well you can summarize it by saying that XenServer 6.1 and PVS is not compliant out of the box!
The Citrix information about this issue can be found here and basically tells you that; The standard XenServer Tools do not include support for Volume Shadow Copy Service (VSS) or Citrix Provisioning Services (PVS). For customers who wish to use VSS or PVS, the legacy XenServer Tools must be used.
What does this then mean in real life if you go ahead and use the standard XenServer tools and what errors might you be struggling with if you have this issue? Answer; you’ll see blue screens like this (xenvif.sys);
So what shall you do to prevent this, well use the steps in the support article from Citrix PRIOR to installing the legacy tools (xenlegacy.exe), otherwise you’ll end up with this blue screen (xenvbd.sys);
And of course you could argue whether Citrix could have provided a bit more heads up for everyone out there in the release notes and blog posts of XenServer 6.1. I hope that not many of you ran into this and spent to much time on it prior to finding the Citrix workaround article!
//Richard
XenServer 6.1 Releases
“Over the past several months, literally hundreds of people have asked me the question “When will Tampa release?” I am pleased to announce that earlier today, “Tampa” officially reached GA as XenServer 6.1. Within engineering, this is officially considered a “cloud centric” release. While on the surface that would seem to indicate a lack of features for traditional server virtualization and desktop, but the reality is quite different. When you consider that a cloud runs in a datacenter, and that cloud workloads typically translate into some pretty large VM densities, all with a requirement for a high degree of workload isolation; “cloud centric” actually translates into a set of pretty stringent performance requirements. To illustrate the point, let’s consider three key features, live storage migration, network security and VM conversion.
When you look at some of the most successful clouds, you’ll quickly see that the concept of resource pools are somewhat limiting. Regardless of the size of the pool, if your cloud is successful, eventually you’re going to have more customers than can fit in your cluster or pool. During the design phase for Storage XenMotion, we accounted for this with the result being a shared nothing live storage migration solution which works equally well across all storage types and without being confined to an arbitrary resource pool concept. While designed for the cloud, it fully supports enterprise storage management requirements, and even supports live VM migration between local storage for those cases where shared storage wasn’t implemented.”
Continue reading here…
//Richard







