WilliamLam.com

  • About
    • About
    • Privacy
  • VMware Cloud Foundation
    • VMware Cloud Foundation 9.1
    • VMware Cloud Foundation 9.0
  • VKS
  • Homelab
    • Hardware Options
    • Hardware Reviews
    • Lab Deployment Scripts
    • Nested Virtualization
    • Homelab Podcasts
  • VMware Nostalgia
  • Apple

10 Exciting Enhancements in VMware Cloud Foundation 9.1.1

09.03.2026 by William Lam // 4 Comments

This has been an exciting week as VMware Explore 2026 takes place in Las Vegas, where I have been meeting with customers and partners while delivering several technical breakout sessions and workshops. To coincide with the event, we have also announced the general availability of VMware Cloud Foundation (VCF) 9.1.1, the first maintenance release for VCF 9.1! 🥳

Note: While there is no defined patch sequence for maintenance and EPs, there is a special exception that you should be aware specifically for VCF 9.1.1 release which will have a couple of specific sequence that must be followed (pre-checks already built into the release). These exceptions will be removed in a future maintenance release, but just something to be aware of

  • Fleet LCM must be patched to 9.1.1 before updating other VCF components to 9.1.1
  • VCFMS must be updated to 9.1.1 before updating Identity broker, Salt Master/RaaS component to 9.1.1
  • VCF Automation (VCFA) must be updated to 9.1.1 before updating VCD Migrator component to 9.1.1

As a maintenance release, it includes all cumulative bug fixes and security updates from previous Express Patches (EPs), along with platform stability improvements and enhancements that simplify the journey to VCF 9.1.

While there are many improvements in this release, here are ten that I think are worth highlighting.

[Read more...]

Categories // VMware Cloud Foundation Tags // VCF 9.1

VCF 9.1.1: Adopting the Reduced VCF Management Services (VCFMS) Footprint After an Upgrade

09.03.2026 by William Lam // Leave a Comment

When VCF Management Services (VCFMS) was introduced in VCF 9.1.0, its virtual machine sizing was optimized to accommodate the largest optional Day-N service. This reduced the likelihood of requiring a rollout to a larger VM size as additional services were enabled. However, for environments that did not deploy these optional Day-N services, some VCFMS virtual machines could be larger than necessary.

With VCF 9.1.1, VCFMS sizing has been optimized for the initial Day-0 deployment. In addition, individual VCFMS components have been further right-sized to ensure that each service reserves only the resources it requires, improving overall resource utilization. For example, a Simple (non-HA) deployment, you will now have one less VCFMS Worker Node (12 vCPU / 24GB memory).


It is important to note that the right-sized VCFMS worker nodes and component sizing are automatically applied for new VCF 9.1.1 deployments, but they are not automatically applied to existing deployments that are upgraded to VCF 9.1.1.

With that said, users who upgrade to VCF 9.1.1 can still realize the benefits of the reduced VCFMS footprint by running a post-upgrade script that produces the same end state as a new VCF 9.1.1 deployment.
[Read more...]

Categories // VMware Cloud Foundation Tags // VCF 9.1.1

Configuring OIDC with PKCE in Keycloak for VCF Private AI Services

08.26.2026 by William Lam // Leave a Comment

I have taken a short hiatus from playing with my NVIDIA RTX 4000, which fits perfectly inside a Minisforum MS-A2 and is what I use to run VMware Cloud Foundation (VCF) 9.1. While redeploying my environment to test an upcoming release of VCF Private AI Services (PAIS), I was reminded that the deployment requires an OIDC provider that supports the Authorization Code grant flow with PKCE (Proof Key for Code Exchange).

When I originally deployed PAIS with VCF 9.0, I used Authentik as my identity provider (IdP). With my VCF Infrastructure Services (VIS) Appliance which provides a number of services including Keycloak as an OIDC provider, I wanted to figure out the required Keycloak configuration to satisfy the PAIS OIDC requirements, especially as this can help accelerate Lab/PoC deployments.

After some trial and error, and with the help of OpenAI Codex to debug my live environment, I now have Keycloak successfully configured with PAIS, along with a script to generate the access token required to interact with a PAIS Model Endpoint! 🥳

[Read more...]

Categories // Private AI Services, VMware Cloud Foundation Tags // PAIS, VCF 9.1

  • 1
  • 2
  • 3
  • …
  • 75
  • Next Page »

Search

Thank Author

Author

William is Distinguished Platform Engineering Architect in the VMware Cloud Foundation (VCF) Division at Broadcom. His primary focus is helping customers and partners build, run and operate a modern Private Cloud using the VMware Cloud Foundation (VCF) platform.

Connect

  • Bluesky
  • Email
  • GitHub
  • LinkedIn
  • Reddit
  • RSS
  • Twitter
  • Vimeo

Recent

  • 10 Exciting Enhancements in VMware Cloud Foundation 9.1.1 09/03/2026
  • VCF 9.1.1: Adopting the Reduced VCF Management Services (VCFMS) Footprint After an Upgrade 09/03/2026
  • Configuring OIDC with PKCE in Keycloak for VCF Private AI Services 08/26/2026
  • VCF 9.1 - Understanding VCF Converge & Import Scenarios for vCenter Server Without NSX 08/24/2026
  • VCF 9.1 - Configuring Harbor to use VCF Identity Broker (IDB) for External Identity Federation 08/19/2026
Privacy & Cookies: This site uses cookies. By continuing to use this website, you agree to their use.

To find out more, including how to control cookies, see here: Cookie Policy

Copyright WilliamLam.com © 2026

Loading Comments...