Data/CheckDescription.json

{
  "Sample": {
    "Engine Skeleton Smoke Test": "Confirms the precheck engine itself is working before real checks are run."
  },
  "SDDC Manager": {
    "Hotfix Version Alias Coverage": "Flags vCenter, ESX, or NSX builds not recognized as upgrade-ready, so unregistered hotfix versions don't silently block the upgrade.",
    "VCF Bill of Materials Upgrade Readiness Check": "Verifies SDDC Manager, vCenter, and NSX are all on versions that support upgrading to VCF 9.",
    "SDDC Manager Platform Lock Table": "Detects a stale internal lock that can prevent SDDC Manager from starting new lifecycle operations.",
    "SDDC Manager Failed Tasks": "Surfaces recent failed SDDC Manager tasks that should be understood before starting an upgrade.",
    "VCF License Key Expiration": "Warns when a VCF-managed license key is expired or about to expire, which can interrupt an upgrade.",
    "SDDC Manager Depot Account Status": "Confirms SDDC Manager's depot connection is configured so upgrade bundles can be downloaded.",
    "vCenter Core and vSAN TiB Report": "Reports total CPU cores and vSAN capacity to help estimate licensing needs.",
    "vSphere Lifecycle Manager (vLCM) Enablement": "Flags clusters not managed by vLCM images, which is required to upgrade hosts to ESX 9.0 or later.",
    "SDDC Manager Appliance Disk Space": "Checks that the SDDC Manager appliance has enough free disk space to safely perform an upgrade.",
    "SDDC Manager LCM Manifest Polling": "Confirms manifest polling is enabled so all available upgrade bundles show up in SDDC Manager.",
    "SDDC Manager VxRail Manager Table": "Detects VxRail Manager integration errors that should be resolved before upgrading.",
    "SDDC Manager Async-Patch Upgrade History": "Flags prior async-patch history for Broadcom Support to review before upgrading.",
    "SDDC Manager Health Summary": "Confirms SDDC Manager's own health-summary check passes, catching issues that could disrupt the upgrade.",
    "SDDC Manager Pre-Upgrade Check-Set Assessment": "Runs the same assessment as SDDC Manager's Run Precheck button and reports any failures or warnings.",
    "Management Domain Resource Utilization": "Warns when the management cluster is too low on CPU, memory, or storage headroom to safely upgrade."
  },
  "vCenter": {
    "vCenter Appliance Size Check": "Warns when a vCenter appliance is undersized for its live host/VM inventory, and blocks the upgrade when its disk doesn't match a supported VCSA size.",
    "vCenter and ESX Certificate Expiration": "Warns about vCenter or ESX certificates that are expired or close to expiring, which can block the upgrade.",
    "Multiwriter-Enabled Virtual Disks": "Flags VMs with multiwriter-enabled disks, since they can't be vMotioned and may complicate the upgrade.",
    "Management Appliance Snapshot Size": "Flags large snapshots on management appliances (SDDC Manager, vCenter, VRSLCM) that should be cleaned up before upgrading.",
    "Legacy Plugin Detection": "Detects end-of-life vCenter plugins (Site Recovery Manager, Dell EMC RecoveryPoint) that need a migration plan before upgrading.",
    "HCX Plugin Detection": "Reports whether HCX is registered with vCenter, since HCX must meet its own compatibility requirements for the target VCF version.",
    "vSphere Supervisor Cluster Detection": "Reports whether vSphere Supervisor is enabled, and warns if a Supervisor cluster is still VUM-managed, since it can't move to vLCM images until vCenter reaches 9.0.",
    "vCenter VMAFD Machine ID": "Detects a corrupted vCenter identity record that can block upgrade operations if left unresolved.",
    "IPFIX/NetFlow Configuration Consistency": "Flags inconsistent IPFIX/NetFlow settings across switches so monitoring doesn't silently change post-upgrade.",
    "DRS Affinity/Anti-Affinity Rules": "Reports mandatory DRS affinity/anti-affinity rules, which can restrict host evacuation during the upgrade.",
    "ESX Host Power State": "Confirms every ESX host is powered on and connected before the upgrade begins.",
    "ESX Host Memory Utilization": "Warns when a host's memory usage is high enough to risk performance issues during the upgrade.",
    "Datastore Free Space": "Reports datastore free space and capacity, warning when inaccessible or over 80% full (vSAN) / 90% full (other types), to confirm storage headroom before upgrading.",
    "Distributed Virtual Switch Version": "Flags distributed virtual switches below version 7.0, which vCenter Server 9.0 requires as a minimum.",
    "vCenter Appliance Disk Space, Inode, and Heap Dump Check": "Flags low disk space, low inodes, or leftover heap dump files on the vCenter appliance that could interrupt the upgrade.",
    "vCenter Appliance Root Password Expiration": "Warns when the vCenter root password is expiring or auto-rotation is disabled, either of which could lock out access mid-upgrade.",
    "vCenter Trusted Root CRL Accumulation Check": "Flags a buildup of revocation-list entries that can crash the certificate-management service during the upgrade.",
    "vCenter Enhanced Linked Mode (ELM) Compatibility": "Flags vCenters in Enhanced Linked Mode, which VCF 9.x Single Sign-On doesn't support, and checks vmdir replication health among ELM partners.",
    "vCenter Lookup Service SSL Trust Mismatch": "Detects services whose certificate doesn't match what vCenter's Lookup Service has on file, which can break trust during the upgrade.",
    "vCenter VMDir Database File Size": "Detects a corrupted or missing vCenter identity database that must be resolved with support before upgrading.",
    "vCenter VMDir Health State": "Confirms the vCenter appliance's directory service reports a normal, healthy state before upgrading.",
    "vSphere Supervisor Cluster Kubernetes Versions": "Reports the Kubernetes version running on each vSphere Supervisor cluster for upgrade-compatibility planning.",
    "vCenter Appliance Health Endpoints": "Confirms the vCenter appliance's own health checks (system, memory, storage, swap, services) are all healthy.",
    "vCenter Appliance Outbound Proxy Configuration": "Reports any outbound proxy configured on a vCenter appliance so its health can be verified before upgrading.",
    "vCenter Appliance Storage Usage Detail": "Shows per-partition storage usage on the vCenter appliance for capacity planning.",
    "vCenter Service Status": "Flags any vCenter appliance service reporting an unknown state, which should be investigated before upgrading.",
    "vCenter SSO Administrator Password Expiry": "Warns when the SSO administrator password is expired or expiring soon, which could block login during the upgrade.",
    "vSphere Supervisor Cluster Kubernetes Versions": "Reports the Kubernetes version running on each vSphere Supervisor cluster for upgrade-compatibility planning.",
    "vSphere Supervisor Namespaces": "Reports every vSphere Namespace configured on a Supervisor-enabled vCenter, including its backing cluster and config status."
  },
  "ESX": {
    "ESX Lockdown Mode": "Confirms hosts with Lockdown Mode enabled still allow the VCF service account access needed to complete the upgrade.",
    "ESX execInstalledOnly Enforcement": "Reports whether hosts are hardened with execInstalledOnly enabled, for security posture awareness.",
    "ESX Hardware Summary and CPU Compatibility Check": "Summarizes ESX host hardware and flags unsupported CPUs that can block upgrades.",
    "ESX Image Profile": "Reports the current ESX build on each host for upgrade planning."
  },
  "vSAN": {
    "vSAN Cluster Health": "Confirms every vSAN-enabled cluster reports overall green health before upgrading.",
    "vSAN Disk Group Mount Status": "Confirms every vSAN disk group is mounted and every disk reports a healthy checksum/CMMDS/host-usage state, since any of these can indicate a problem that should be fixed first.",
    "vSAN Disk Format Compatibility": "Confirms every vSAN cluster's on-disk format supports being updated as part of the upgrade.",
    "vSAN Witness Host Version": "Confirms a stretched cluster's witness host is on the same version as its data hosts.",
    "vSAN Inaccessible Objects": "Flags any vSAN object reporting an unhealthy state, since inaccessible objects can mean data is unavailable."
  },
  "NSX": {
    "NSX Manager Backup History": "Confirms NSX Manager has a recent successful backup before upgrading.",
    "NSX Manager Open Alarms": "Flags open NSX Manager alarms at error severity that should be resolved before upgrading.",
    "NSX Application Platform (NAPP) Registration": "Confirms every registered NSX Application Platform cluster is connected.",
    "NSX Latency Profile (pNIC Latency Stats)": "Flags an older NSX version combined with an active latency profile, a combination that can interrupt the upgrade.",
    "NSX Federation Configuration": "Detects whether NSX Federation is configured, since federated environments need extra upgrade steps.",
    "NSX Transport Zone Tags": "Flags transport zones missing a tags field, which can indicate an older zone that predates tagging support.",
    "NSX Manager API Rate Limits": "Confirms NSX Manager's API rate limits match expected values to avoid upgrade-time throttling.",
    "NSX Manager and Edge Password Expiration": "Warns when an admin, audit, or root password on NSX Manager or an Edge node is expiring or auto-rotation is disabled, either of which could block access mid-upgrade.",
    "NSX Compute Manager Registration Status": "Confirms every vCenter registered with NSX Manager is connected and properly registered.",
    "NSX Transport Node Disk Space": "Warns when a transport node's disk usage is high enough to risk problems during the upgrade.",
    "NSX Manager Node Install/Upgrade Service": "Confirms NSX Manager's install/upgrade service is enabled and reachable by IP address, required for the upgrade to proceed."
  },
  "Aria Suite": {
    "Aria Suite Component Version Check": "Confirms every Aria Suite component meets the minimum version required to upgrade to VCF 9.x.",
    "Aria Suite Appliance Root Password Expiration Check": "Warns when an Aria Suite appliance's root password is about to expire, which could block access during the upgrade.",
    "Aria Suite Lifecycle Manager Certificate Expiration Check": "Warns when a certificate managed by Aria Suite Lifecycle Manager is expired or expiring soon.",
    "Aria Suite Lifecycle Manager Disk Space Check": "Confirms vRSLCM has enough free disk space to perform its own upgrade.",
    "Aria Suite Appliance Disk Space Report": "Flags Aria Suite appliances running low on disk space, which could cause upgrade failures.",
    "Aria Operations Adapter Collection Status Check": "Confirms every Aria Operations adapter instance is actively collecting data before upgrading.",
    "Aria Operations Collector Status Check": "Confirms every Aria Operations collector, including remote collectors, reports an 'UP' state before upgrading.",
    "Aria Operations Collector Type Inventory": "Lists each Aria Operations collector's deployment type (internal, remote, Cloud Proxy, or AAP) for reviewer visibility.",
    "Aria Operations Open Alerts": "Flags active Critical or Immediate alerts in Aria Operations that should be resolved before upgrading.",
    "Aria Operations Certificate Expiration Check": "Warns when a certificate registered with Aria Operations is expired or expiring soon.",
    "Aria Operations Licensing Check": "Reports Aria Operations' license edition, capacity, usage, and expiration, warning when a non-permanent license is expired or expiring soon.",
    "Aria Operations Lifecycle Status Check": "Checks Aria Operations' installed version, queried directly from Aria Operations, against Broadcom's Interop Matrix upgrade-path compatibility for the selected VCF destination release.",
    "Aria Operations Sizing Overview": "Lists Aria Operations' own self-monitored CPU, memory, disk, network, and object-count metrics for reviewer visibility."
  }
}