Oracle Cloud Infrastructure – Monthly Update May 2024

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Base Database: Backup and restore from a standby database in a Data Guard association for Autonomous Recovery Service

You can now backup and restore from a standby database in a Data Guard association for the Autonomous Recovery Service.

Exadata Database Service on Dedicated Infrastructure: Create and Use Custom Software Images

The ability to create a custom software image (Database and Grid Infrastructure) with all the required patches bundled together and certified in the customer environment will allow developers and database administrators to build an approved and reusable “gold image”.

Full Stack Disaster Recovery introduces Pause group

Full Stack Disaster Recovery introduces pause group.
In any type of DR Plan, you can now add one or more execution pauses using pause groups. You can add pause groups after the Built In Prechecks and before the last plan group. See Add a Pause Group in a Plan Group for more information.

Manage Serial Console Access to Oracle Exadata Database Service on Dedicated Infrastructure Systems

Note: The serial console feature requires (at a minimum) Exadata System Software 23.1.13. Once the necessary software is installed via Quarterly Maintenance and a reboot of your VMs takes place, you will be able to use the new serial console feature.

You can create and delete serial console connections to your Oracle Exadata Database Service on Dedicated Infrastructure systems to diagnose and resolve VM guest operating system issues using an SSH connection in case standard SSH access to the VMs is not possible.

Requirements: Exadata System Software 23.1.13 is the minimum required version. Also, make sure to review all prerequisites stated below, including setting a password for either the opc or the root user. Failure to make necessary changes to meet these requirements in advance will result in the inability to urgently connect to the serial console when the need arises when the VM is not otherwise accessible.

Downscale OpenSearch Clusters with Vertical Resizing

OCI Search with OpenSearch now supports downscaling a cluster with vertical resizing. You can decrease the memory and OCPU resources for a cluster’s leader nodes, data nodes, and OpenSearch Dashboard nodes.

For more information see the following:

Oracle Exadata Database Service on Cloud@Customer: Create and Use Custom Software Images

The ability to create a custom software image (Database and Grid Infrastructure) with all the required patches bundled together and certified in the customer environment will allow developers and database administrators to build an approved and reusable “gold image”.

General Availability of Boot Volume Replacement for Virtual Machine Instance

Today we are thrilled to announce the general availability of Boot Volume Replacement for Virtual Machine Instance! This feature allows customers to restore their existing instance from a boot volume or golden boot volume with a simple API call without terminating the instance. This is an efficient way to manage and restore instances at scale and reduces the chance of manual errors.

Feature Summary and Benefits

  • Simplified process to restore or upgrade existing instances from a golden image or boot volume with a few clicks or an API call
  • Quickest way to fix issues while retaining data stored on attached data volumes and network configuration
  • Eliminate the operational burden to upgrade Operating Systems at a large scale
  • Cost-efficient transfer of instances between application teams with a fresh state
  • Reduce the long recycle time to relaunch new instances

Support for Migrating OS Management Instances to OS Management Hub

Oracle OS Management Hub (formerly OS Management) is the next-generation management solution for your operating system environments. Use a centralized management console to manage updates and patches for instances in OCI, private data centers, or supported third-party cloud environments.

OS Management Hub now provides a migration assistant to help you migrate OS Management managed instances to OS Management Hub. The migration assistant provides a set of utilities to assist you with each stage of migrating instances from OS Management to OS Management Hub. For more information, see Migrating OS Management Instances to OS Management Hub.

Base Database: Oracle Database 23ai is available on Base Database Service

Oracle Database 23ai is a regular production release available on Base Database Service. With this release, you can perform all the lifecycle operations on the 23ai database.

Oracle Database 23ai on Exadata Database Service on Dedicated Infrastructure

Oracle Database 23ai is a regular production release available on Oracle Exadata Database Service on Dedicated Infrastructure (ExaDB-D). With this release, you can perform all the lifecycle operations on the 23ai databases.

Oracle Database 23ai on Oracle Exadata Database Service on Cloud@Customer

Oracle Database 23ai is a regular production release available on Oracle Exadata Database Service on Cloud@Customer (ExaDB-C@C). With this release, you can perform all the lifecycle operations on the 23ai databases.

Oracle GoldenGate 23ai is now available in OCI GoldenGate

Oracle GoldenGate 23ai is now available in OCI GoldenGate for Oracle Database and PostgreSQL. Learn more.

Support for Network Security Groups (NSG)

You can now optionally use network security groups (NSGs) to implement the security rules that control the inbound and outbound traffic between your Oracle Database and Recovery Service. In the OCI console, you can use options to add a Recovery Service subnet to the Recovery Service NSGs configured in the database VCN.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions

Oracle Cloud Infrastructure – Monthly Update April 2024

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Database Management for Oracle Exadata Database Service on Cloud@Customer

You can now enable and use Database Management for Oracle Databases running on Exadata Database Service on Cloud@Customer. For more information, see Database Management for Oracle Databases.

Usage Statements are now available

The new Usage Statements page lets you access monthly statements that show your subscription usage in XLSX format. You can filter by the subscription and usage period, and you can also specify the email addresses of the users that are authorized to view usage statements. The statements are only available from a parent tenancy. For more information, see Usage Statements.

Data Flow now Supports Spark 3.5.0

Oracle Cloud Infrastructure Data Flow is a fully managed service for running Apache Spark ™ applications. It lets developers to focus on their applications and provides an easy runtime environment to run them. It has an easy and simple user interface with API support for integration with applications and workflows. You don’t need to spend any time on the underlying infrastructure, cluster provisioning, or software installation.

Data Flow now supports Spark 3.5.0. For more information on migrating to Spark 3.5.0, see the Data Flow documentation.

APM – Additional Widgets Available

Application Performance Monitoring provides a comprehensive set of features to monitor applications and diagnose performance issues.

For easier usability, the APM dashboards have been enhanced with additional widgets enabling new visualization for TQL results. The following Oracle-defined widgets and filter are now available:

  • Traces Bar Chart
  • Traces Compare Metrics
  • Traces Gauge Chart
  • Traces Line Chart
  • Traces Pie Chart
  • Traces Single Value
  • APM Query Filter

New Security Zone Policy for Cloud Shell

A new security zone policy has been developed to ensure that Cloud Shell hosts in a security zone can’t have public network access.

You can enable this new policy in your custom security zone recipes. The new policy is not enabled in the Maximum Security Recipe.

Cache with Redis support for Network Security Groups (NSGs)

You can now control network access to Redis clusters using security rules defined for one or more network security groups (NSGs) that you specify (up to a maximum of five NSGs).

Functions memory limits and usage metrics now available for OCI Functions

The regional limits for total memory available for concurrent function execution and total memory available for provisioned concurrency are now shown in the Console.

In addition, two new metrics (AllocatedTotalConcurrency and AllocatedProvisionedConcurrency) are now available. You can use these metrics in Oracle Cloud Infrastructure Monitoring to monitor how much of the total memory available for concurrent function execution and provisioned concurrency has been allocated. You can also use these metrics to create alarms to notify you if memory allocation(at the tenancy or the application level) passes a threshold that you define.

For more information, see Monitoring Memory Usage and Availability for OCI Functions.

Support for Apache HTTP Server on Windows

Stack Monitoring lets you proactively monitor an application and its underlying application stack, including application servers and databases. It starts by discovering all components of the application, including the application topology. Once discovered, it automatically collects status, load, response, error, and utilization metrics for all application components.

With this latest update, Stack Monitoring now supports Apache HTTP Server resources on both Linux and Windows servers.

Data Safe Now Includes SQL Firewall Violation Report History

You can now view the SQL Firewall violation report history. Much like the existing Audit and Alert report history pages, the SQL Firewall violation report history page allows you to view the list of reports generated during the past three months, details about those reports, and download reports. For more information, see View and Manage Violation Report History in the Using Oracle Data Safe guide.

Data Safe Now Includes Additional Filters in Report History

For easier usability, the report history pages for Audit, Alerts, and SQL Firewall Violations have been enhanced with additional filters. For more information, see View and Manage Violation Report History in the Using Oracle Data Safe guide.

Additional OCI Events for Audit Trails in Data Safe

Additional OCI Events for audit trails have been added to make it easier to know when the status of your audit trails changes. For more information, see the Activity Auditing Event Types in the Administering Oracle Data Safe guide.

Support for Kubernetes version 1.27.10

Although Kubernetes version 1.27.2 will not be supported after May 21, 2024, it might continue to be available for selection. However, Oracle strongly recommends you upgrade clusters to Kubernetes version 1.27.10, 1.28.2, or 1.29.1.

To upgrade a cluster to a new Kubernetes minor version:

  1. Upgrade the Kubernetes version running on the control plane by following the instructions in Upgrading the Kubernetes Version on Control Plane Nodes in a Cluster.
  2. Having upgraded the control plane, upgrade the Kubernetes version running on worker nodes in a node pool by following the instructions in Upgrading the Kubernetes Version on Worker Nodes in a Cluster.

AI Quick Actions are now Available in Data Science

AI quick actions makes it easy for you to browse a curated list of foundation models, and deploy, fine-tune, and evaluate them inside Data Science notebooks. If you have an active notebook session, you need to deactivate and reactivate the notebook in order to access AI quick actions.

OCI Language

Language offers REST API for powerful text analytics and translations. Analyze vast amounts of unstructured text with ease, utilizing pretrained and custom models. Perform sentiment analysis, key phrase extraction, text classification, named entity recognition and detect PII data in text. Tailor models for domain-specific tasks and effortlessly translate text across various languages. Language also supports document translation and asynchronous jobs for efficiently processing large-volume workloads.

Language 3.0 enhancements include:

  • Document Translation: This enables the easy and efficient translation of documents from one language to another.
  • Async jobs: OCI Language can perform asynchronous jobs, which are executed in the background and do not require immediate responses.
    • APIs added for Aysnc jobs.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions

Oracle Cloud Infrastructure – Monthly Update March 2024

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Support for VMware Cloud Provider Stack (VCPS) 3.2.0 BOM

Oracle Cloud Infrastructure VMware Solution now supports VMware Cloud Provider Stack (VCPS) 3.2.0 BOM when you provision a new SDDC cluster and ESXi hosts. The VCPS 3.2.0 BOM contains the following components:

  • VMware ESXi 8.0 U2 (build 22380479)
  • VMware vCenter Server 8.0 U2a (build 22617221)
  • VMware NSX-T Data Center 4.1.2.1 (build 22667789)
  • HCX Cloud 4.8 (build 20914430)
  • HCX Connector 4.8 (build 22804409)

Note that vSphere version VCPS 3.2.0 BOM is supported for new SDDCs only.

Resource explorer enhances the Search experience

Oracle Cloud Infrastructure introduces resource explorer to change the way you find and work with resources. Features include filtering and sorting through the Console and the ability to quickly switch between search modes. For more information, see Querying ResourcesSearching Services, and Searching Documentation.

Identity Domains API Supports Custom Parameters for Social Identity Providers

The /SocialIdentityProviders endpoint now supports a multi-valued custom parameter for Social Identity Provider configurations.

Create a sensitive data model manually in Data Safe

You can now create sensitive data models manually. This allows you to only add columns of interest to your sensitive data model instead of having to perform a discovery run and removing all unwanted columns.

Updated checks in Data Safe’s Security Assessment

The Security Assessment in Oracle Data Safe was updated with additional checks from Oracle Database 19c CIS Benchmark v1.2 and STIG V2R8 for the Oracle Database as well as other updates to easier identify changes in your database’s security posture.

Availability of scope information for incremental discovery in Data Safe

You can now view the scope details of the latest incremental discovery as well as past incremental discoveries. You can view when the incremental discovery was performed, the selected schemas for the incremental discovery, the selected sensitive types, what column changes were approved or rejected, and whether the changes were applied to the sensitive data model.

ADB-D on Exadata Cloud@Customer: Provision for Free Developer Database

Customers who have subscribed to Oracle Exadata Database Service or Autonomous Database on either a Dedicated Exadata Infrastructure or Exadata Cloud@Customer can create and use Oracle Autonomous Database for Developers instances. Autonomous Database for Developers instances are free Autonomous Databases that developers can use to build and test new applications.

Burstable Instances for Model Deployment in Data Science is now Available

  • Burstable Instances for Machine Learning: Lets deployment of machine learning models on virtual machines with flexible CPU usage.
  • Baseline CPU Utilization: OCI offers less than a typical CPU baseline suitable for varying workload demands. The options are 50% or 12.5%, so suitable for varying workload demands. If you deploy machine learning models, only the 50% baseline is available.
  • Surge Capability: Can surge to higher levels during occasional spikes in server requests, adapting to changing computational needs.
  • Comparison to Traditional VMs: Unlike traditional VM instances with fixed CPU resources, burstable instances maintain a standard CPU utilization level.
  • User-Selected Baseline and Bursting: Lets users to select a baseline CPU utilization, with the capability to momentarily increase CPU usage above this baseline, up to 100% of the provisioned CPU cores.

Autoscaling for Model Deployments in Data Science is now Available

Some Key benefits of autoscaling for model deployment include:

  • Dynamic Resource Adjustment: Autoscaling automatically increases or decreases the number of compute resources based on real-time demand (for example, autoscale and downscale from 1 to 10). This ensures that the deployed model can handle varying loads efficiently.
  • Cost Efficiency: By adjusting resources dynamically, autoscaling ensures you only use (and pay for) the resources you need. This can result in cost savings compared to static deployments.
  • Enhanced Availability: Paired with a load balancer, autoscaling ensures that if one instance fails, traffic can be rerouted to healthy instances, ensuring uninterrupted service.
  • Customizable Triggers: Users can customize the autoscaling query using MQL expressions.
  • Load Balancer Compatibility: Autoscaling works hand-in-hand with load balancers where LB bandwidth can be scaled automatically to support more traffic, ensuring best performance and reducing bottlenecks.
  • Cool-down Periods: After scaling actions, there can be a defined cool-down period during which the autoscaler doesn’t take further actions. This prevents excessive scaling actions in a short time frame.

Autonomous Database for Developers is available on Autonomous Database on Dedicated Exadata Infrastructure

Customers who have subscribed to Autonomous Database on either Dedicated Exadata Infrastructure or Exadata Cloud@Customer can create and use Autonomous Database for Developers instances. Autonomous Database for Developers instances are free Autonomous Databases that developers can use to build and test new applications.

Search with OpenSearch now supports OpenSearch version 2.11

OCI Search with OpenSearch now supports OpenSearch version 2.11. The upgrade to OpenSearch version 2.11 comes with several improvements, including:

New clusters are created by default as OpenSearch 2.11 clusters. Existing clusters will still use previous version of OpenSearch, however you can upgrade them to version 2.11 using one of the following approaches:

Container-level metrics now available

Container-level metrics are now available for Container Instances. In addition to the existing container instance metrics, you can now track metrics for each individual container, such as CPU and memory usage.

Announcing the general availability of Oracle Globally Distributed Autonomous Database

The Oracle Globally Distributed Autonomous Database simplifies the deployment and management of distributed databases. It provides transparent access for applications using these databases by automatically placing data in the appropriate location. The addition of distributed database capabilities on top of the proven SQL capabilities of Oracle Database enables customers to immediately benefit from decades of innovation in performance optimization, RAC parallel clusters, converged database architecture, and security.

Oracle Globally Distributed Autonomous Database can help you:

· Achieve hyperscale performance for transaction processing and mixed workloads
· Address data sovereignty requirements for distributed data warehousing and data lakes
· Deploy concurrent data pipelines and machine learning analytics
· Provide maximum availability for mission-critical applications
· Build cloud-native, scalable applications

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.

Oracle Cloud Infrastructure – Monthly Update February 2024

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Cloud Advisor Supports Additional Compute Shape

The Cloud Advisor recommendations Downsize Underutilized Compute Instances and Rightsize Compute Instances, now support compute shape VM.Standard.A1.Flex, in addition to more than 21 other standard and optimized compute shapes.  

Create event notifications directly in Oracle Data Safe

You can now create event notifications and subscriptions directly in Data Safe. Instead of having to use OCI Events and Notifications to create Data Safe related Rules and Subscriptions, you can now use the Notifications tab available in Data Safe’s features to create event notifications and subscriptions while remaining in Data Safe.

Support for PVCs backed by Ultra-High Performance block volumes

You can now create Kubernetes persistent volume claims (PVCs) backed by Ultra High Performance block volumes. Having created a suitable PVC, you can define a pod that uses an Ultra High Performance block volume, and schedule the pod onto a node that supports Ultra High Performance block volumes.

View Unused Database CPU Capacity

You can now view unused CPU capacity for Operations Insights enabled databases, this new functionality is featured within the Aggregate treemap of the database CPU utilization section.

Document Generator pre-built function now available

The OCI Functions catalog of pre-built functions now includes the Document Generator pre-built function. The Document Generator pre-built function generates documents in an Object Storage bucket based on provided JSON data and an Office template document stored in Object Storage.

New Release of Secure Desktops

Improvements to audit events data for desktop pools and integration with work requests. Updated general purpose Oracle Linux 7 and Oracle Linux 8 base images

Disable Simultaneous Multithreading now available on VM instances

You can now disable simultaneous multithreading (SMT) on your virtual machine (VM) instances. 

OCI Database with PostgreSQL adds support for additional shapes

OCI Database with PostgreSQL now supports additional shapes for database systems, including:

  • PostgreSQL.VM.Standard3.Flex.2.32GB
  • PostgreSQL.VM.Standard3.Flex.4.64GB
  • PostgreSQL.VM.Standard3.Flex.8.128GB
  • PostgreSQL.VM.Standard3.Flex.16.256GB
  • PostgreSQL.VM.Standard3.Flex.32.512GB

Oracle Cloud Infrastructure Tags and Search in Database Management

Database Management now supports Oracle Cloud Infrastructure Tagging and Search services. In Database Management, you can now:

  • Use tags to add metadata to resources, which enables you to define keys and values and associate them with resources such as Managed Databases and Database Groups. You can use tags to:
    • Organize and list Database Management resources based on your requirements. 
    • Filter Oracle Database fleet and other Database Management resources.
  • Use search to find resources within a tenancy, console pages, and documentation.

Queue source for connectors

You can now move queue messages from the Queue service to supported target services: Functions, Notifications, Object Storage, and Streaming.

Support for Automatic Key Rotation

OCI Key Management Service enables you to automatically rotate encryption keys using a rotation schedule and interval for a private vault. The rotation schedule defines the frequency of rotation and retrieves the date and time when the first rotation occurs. Automatic key rotation is supported only for keys in the “Enabled” state and vault in the “Active” state and the feature is applicable for HSM and Software Keys (both symmetric and Asymmetric keys). For more information, see Automatic Key Rotation.

Cloud Shell Now Enables Architecture Choice

If you are a paid tier user, you can choose a default architecture (ARM (aarch64), x86_64 or No Preference) for your Cloud Shell sessions. For more information, see Cloud Shell Architecture.

MySQL HeatWave: Create HeatWave cluster together with DB system

You can now use MySQL HeatWave Console to create a DB system and a HeatWave cluster together in a single operation. By default, it creates a one-node HeatWave cluster together with the DB system. You have the option to change the default setting before initiating the create.

MySQL HeatWave: ECPU Shapes for DB systems

You can now provision MySQL HeatWave DB systems using ECPU shapes. ECPU shapes are architecture agnostic and all ECPU shapes support HeatWave cluster.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.

Oracle Cloud Infrastructure – Monthly Update January 2024

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Named Credentials in Database Management

You can now create named credentials in Database Management to store, manage, and use database user credentials. Once a named credential is created, it can be used by multiple users to securely access a Managed Database and perform various Database Management tasks

Enhanced Health Monitor Experience for Dedicated Virtual Machine Host

  • Enhanced the maintenance status metrics report for Virtual Machine instances on Dedicated Virtual Machine Hosts to include all maintenance scenarios such as a scheduled maintenance event.
  • Introduces new health metrics reports for Dedicated Virtual Machine Hosts to monitor the instance health and performance status of each host.
  • Ensure the planned maintenance event for a Dedicated Virtual Machine Host is available in a customer view at any time beyond the one-time system notification.
  • Minimize the back and forth clicks and optimize the browsing experience for customers in viewing health metrics reports of Virtual Machine instances on a Dedicated Virtual Machine Host.
  • Introduce the instance health status indicator on the console page to identify instance health issues on the Dedicated Virtual Machine Host.

Support for the use of workload identity principals with Cluster Autoscaler

You can now use workload identity principals to enable the Kubernetes Cluster Autoscaler to access OCI services and resources when scaling managed node pools. Alternatively, you can continue to use instance principals for the same purpose.

You can set up workload identity principals for the Cluster Autoscaler when it is running as a standalone program, and when it is running as a cluster add-on.

Support for Dedicated Key Management Service

OCI KMS now supports Dedicated KMS, which is a fully managed, highly available, and single-tenant HSM partition. This service enables you to have exclusive access and control over dedicated partitions within a physical, tamper-resistant HSM device and also ensures the isolation and protection of your encryption keys. You can cryptographically claim your dedicated HSM partitions to have full control of the generation, storage, and usage of keys. These partitions are FIPS 140-2 Level 3 certified, offering a greater level of security for key management.

Generative AI Agents is now in Beta

The Beta release includes the first agent of this service, a Retrieval-Augmented Generation (RAG) agent. 

The RAG agent enables customers to converse with their data through a natural language chatbot interface. Behind the scenes, the agent relies on the large language models (LLMs) hosted in the Generative AI service, including the text generation models from Cohere and Meta, and the Cohere rerank + embeddings models.

Generative AI Agents (Beta) is fully managed so you don’t need to provision models in the Generative AI service and is optimized to work with data stored in OCI Search with OpenSearch clusters. 

Generative AI is now in General Availability

Generative AI is a fully managed service that provides a set of state-of-the-art, customizable large language models (LLMs) from Cohere and Meta (Llama-2) that cover a wide range of use cases for text generation and text embeddings. 

The service offers: 

  • A Console playground feature that lets you try out the pretrained foundational models out-of-the-box and on-demand
  • Dedicated AI clusters to fine-tune foundational models based on your own data
  • Dedicated AI clusters to host custom, fine-tuned models. 

Support for CoreDNS cluster add-on resource request and limit configuration

When running CoreDNS as an add-on to enhanced clusters that you have created using Container Engine for Kubernetes, you can now:

  • Specify resource quantities that CoreDNS containers request.
  • Set resource usage limits that CoreDNS containers cannot exceed.

Support for security rule management in NSGs

You can now include an annotation to specify the use of network security groups (NSGs) to manage some or all of the security rules that control access to the load balancers and network load balancers provisioned for Kubernetes services of type LoadBalancer. Oracle recommends that security rules are managed in NSGs rather than in security lists.

  • oci.oraclecloud.com/security-rule-management-mode: "NSG"
  • oci.oraclecloud.com/oci-backend-network-security-group: "<nsg-ocid>"

Support for deploying Istio as a cluster add-on

You can now use Istio as a cluster add-on. Istio is an open-source, platform-independent service mesh that provides traffic management, policy enforcement, and telemetry collection. Using Istio as a cluster add-on rather than as a standalone program simplifies configuration and ongoing maintenance.

Oracle Data Safe now allows you to view user schema access details

User Assessment now provides you with the ability to view details about the schemas and tables that a user has access to. You can also see what privileges the user was granted on these schemas and tables. 

Oracle Data Safe now allows you to configure and defer risk findings

You can now manually adjust the risk level of a risk finding in a security assessment indefinitely or for a set amount of time. Additionally, a new risk level of Deferred allows you to indicate that you have reviewed the finding and will work on it later so that it doesn’t show up again as a risk in subsequent reports.

Oracle Data Safe now supports Active Data Guard associated target databases

You can now register an Active Data Guard associated database as an Oracle Data Safe target database. During target registration you can select which of the standby databases you would like to register with the primary database. In Activity Auditing you can now also collect audit records from your primary and standby databases.

Alarm suppression history and dimension-specific suppressions

Retrieve history of alarm suppressions and add suppressions by dimension. For example, suppress an alarm for a specific instance by referencing the instance’s name or OCID as a dimension value.

You can now view the top five security assessment findings in Oracle Data Safe

You can now find the top five security findings of the security assessment highlighted on top of the report and easily drill down into the details. The security assessment report shows what risk level each of these five controls was assessed at. For more information, see Structure of a Security Assessment in the Using Oracle Data Safe guide.

Oracle Data Safe now supports CDB$ROOT target databases

You can now register a container database (CDB) as an Oracle Data Safe target database. When specifying the database service name during target registration, you can now enter the name of the CDB. 

MySQL HeatWave: Support for MySQL Versions 8.3.0 and 8.0.36

Both versions, 8.3.0 (Innovation) and 8.0.36, are of production-grade quality. If you desire access to the latest features and improvements and enjoy staying on top of the latest technologies, the MySQL Innovation releases might be the best fit for you. On the other hand, if your application requires established behavior, then 8.0.x releases are more suitable. For more information, see MySQL 8.3.0 Release Notes and MySQL 8.0.36 Release Notes.

OCI Database with PostgreSQL adds support for uuid-ossp extension

OCI Database with PostgreSQL now supports the uuid-ossp extension. For more information, see Supported Extensions for OCI Database with PostgreSQL.

Path analysis tests to troubleshoot network configuration issues with Kubernetes clusters

You can now run pre-defined network path analysis tests to troubleshoot network configuration issues with clusters you’ve created using Container Engine for Kubernetes. These path analysis tests examine virtual network topologies, walk through multiple route tables, and scrutinize security rules in network security groups (NSGs) and security lists. No actual traffic is sent, instead the configuration is examined and used to confirm reachability. For example, you can use a path analysis test to determine whether a pod in a Kubernetes cluster that uses the VCN-Native Pod Networking CNI plugin can reach OCI services, and vice versa.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.

Oracle Cloud Infrastructure – Monthly Update December 2023

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Reboot Migration and Changing the Shape for Dedicated Virtual Machine Host instances now available

We are thrilled to announce the general availability of two new features for Dedicated Virtual Machine Host instances.

  • Reboot Migration
  • Changing the Shape of an instance

Reboot Migration for Dedicated Virtual Machine Hosts is a cloud-native service that helps customers automatically migrate their virtual machine instances on a Dedicated Virtual Machine Host to another Dedicated Virtual Machine Host in a planned maintenance event. OCI also allows customers to kick off the reboot migration on-demand for their business needs (for example, load balancing or infrastructure changes). The migration process is automatic and requires no customer intervention.

Changing the Shape for a Dedicated Virtual Machine Host instance allows customers to change the shape of an instance without having to rebuild the instance or redeploy their business applications. This feature allows customers the ability to scale up their Compute resources for increased performance or to scale down to reduce costs.

Oracle Exadata Database Service on Cloud@Customer: Enhancements to Serial Console Functionality

These new features include:

  • Serial Console access via OCI Cloud Shell
  • Console History

With this new feature, you can now easily connect to the serial console of your virtual machines to perform corrective actions as well as review and audit previous activities performed via the serial console by other users.

Announcing availability of Oracle@Azure multicloud database service

Oracle Database@Azure is an Oracle Cloud Database service that runs Oracle Database workloads in Azure. All hardware for Oracle Database@Azure is colocated in Azure’s data centers, which provides simplicity, security, and low latency for applications located in Azure. Currently the service is only available in Azure Region, East US (Virginia)

Support for Apache HTTP Server

Stack Monitoring now supports Apache HTTP Server resources. The Management Agent should be installed on the same host as the Apache HTTP Server.

New features available for GoldenGate

The latest GoldenGate release includes new networking options when creating source and target connections, as well as the ability to set up contextual notifications for your deployments. 

Database Migration service now supports File Storage service

Database Migration service now supports File storage service. You can now use a shared File Storage mount as the transfer medium between the source and the target databases.

Manage Truststore certificates in OCI GoldenGate

You can now manage Truststore certificates for other Oracle GoldenGate deployments to which your deployment communicates in a client-server manner. 

Base Database: Backup and restore from a standby database in a Data Guard association

You can now backup and restore from a standby database in a Data Guard association.

Base Database: Upgrade operating system to Oracle Linux 8

You can now upgrade the operating system of your DB system to Oracle Linux 8 (OL8) using the Console or APIs.

Support for mixed-shape clusters in Oracle Cloud VMware Solution

Oracle Cloud VMware Solution now supports clusters and mixed shapes in SDDCs:

  • SDDCs are provisioned with one unified managment cluster that hosts all of the required VMware managment components.
  • You can create up to 6 clusters containing up to 64 hosts to manage your workloads.
  • Clusters are initially defined with one type of ESXi host, but you can later add hosts of different shapes, as long as all shapes in the cluster have the same processor vendor.
  • Each cluster has its own pricing interval.

New release for Data Integration

Data Integration is a fully managed, multi-tenant service that helps data engineers and developers with data movement and data loading tasks. Powered by Spark ETL or ELT processes, a large volume of data can be ingested from a variety of data assets; cleansed; transformed and reshaped; and efficiently loaded to Oracle Cloud Infrastructure target data assets.

You can now:

  • Use the merge integration strategy on MySQL targets.
  • View complex hierarchical data in a simplified data structure when browsing the details of file storage and REST data assets.
  • Export and import Data Integration applications.
  • Incrementally extract and load only new or updated data from relational database, Object Storage, and BIP sources into targets.
  • Provide a custom schema file with an Object Storage JSON source in data flows and in data loader tasks that use a single data entity as the source.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.

Oracle Cloud Infrastructure – Monthly Update November 2023

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Cloud Advisor Supports Additional Compute Shape

The Cloud Advisor recommendations Downsize Underutilized Compute Instances, Delete Idle Compute Instances, and Rightsize Compute Instances, now support compute shape VM.Standard3.Flex, in addition to more than twenty other standard and optimized compute shapes.

High Performance Computing now available

High Performance Computing (HPC) performs complex calculations and processes data faster than traditional Compute. HPC uses bare metal servers, ultralow latency cluster networking, high-performance storage options, and parallel file systems. This infrastructure enables parallel processing for compute-intensive workloads such as artificial intelligence, deep learning, data analysis, scientific simulations, and any other high-intensity workloads.

You can create a single-node HPC instance with the standard instance creation workflow. If you want to use multiple HPC instances in a RDMA network group, you can create them through a Cluster Networks with Instance Pools or Compute Clusters.

Automatic Workload Repository (AWR) Hub

AWR Hub lets you consolidate and store detailed performance data from the Automatic Workload Repository of your important Oracle Autonomous Databases. The new AWR Hub onboarding procedures allow the warehouse and hub to be placed in a compartment other than root, an policies can now be created in a subcomparment

New Release of Secure Desktops

The Oracle Cloud Infrastructure Secure Desktops service provides a convenient way to create and manage pools of desktops hosted on compute instances. You can then allocate those desktops to individual users in your organization. Users securely connect to their cloud-hosted desktops from a web browser or installed client.

New Release of Secure Desktop included the:

Enhanced capabilities to create desktop pools and launch desktops in Microsoft Active Directory running in Azure and other bug fixes:

OKE – Support for deploying the Kubernetes Cluster Autoscaler as a cluster add-on

You can now use the Kubernetes Cluster Autoscaler as a cluster add-on. Using the Cluster Autoscaler as a cluster add-on rather than as a standalone program simplifies configuration and ongoing maintenance. You can more simply:

  • Enable or disable the Cluster Autoscaler.
  • Opt into, and out of, automatic updates by Oracle.
  • Select Cluster Autoscaler add-on versions.
  • Manage add-on specific customizations using approved key/value pair configuration arguments.

APM Trace Explorer integration with Threat Intelligence

APM Trace Explorer integration with Threat Intelligence is now available. This new feature provides visibility to potential threats using the IP address from the traces and spans collected based on the information from Threat Intelligence. 

OCI Database with PostgreSQL is now available

Our fully managed, PostgreSQL compatible service leads with price-performance, intelligent sizing and tuning, and high durability for enterprise, SMB, or development & test environments. First Principles: Optimizing PostgreSQL for the cloud (oracle.com)

OKE – Support for flannel when using the OCI native ingress controller

You can now set up the OCI native ingress controller to load balance and route incoming traffic to pods running on worker nodes in a Kubernetes cluster that is using the flannel CNI plugin for pod networking.

Previously, you could only set up the OCI native ingress controller when the cluster was using the OCI VCN-Native Pod Networking CNI plugin for pod networking.

OCI Monitoring – Filter alarms by resource or status

Oracle Cloud Infrastructure Monitoring, you can manage metric queries and alarms for assessing the health, capacity, and performance of your cloud resources. Recently OCI Added this capability to Filter alarms by resource or status using the CLI or API. See ListAlarmsStatus.

Virtual node support for pod readiness gates

When Container Engine for Kubernetes provisions an Oracle Cloud Infrastructure load balancer or network load balancer for a Kubernetes service of type LoadBalancer, you can now specify a pod readiness gate to control traffic.

Specifying a pod readiness gate ensures traffic is only routed to pods on virtual nodes that have both been successfully added to the backend set, and that are ready to receive traffic.

Introducing Stack Monitoring Enterprise Edition

Stack Monitoring lets you proactively monitor an application and its underlying application stack, including application servers and databases.

With the Enterprise Edition, Stack Monitoring introduces a set of advanced monitoring features that include the ability to create custom metrics to monitor conditions unique to your environment using Metric Extensions, use Machine Learning to identify performance anomalies, and extend monitoring visibility to other resources outside Stack Monitoring’s built-in capabilities by importing OCI resources. These extensibility features allow for importing resources from other solutions and services to consolidate monitoring and enrich your application topology.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.

Oracle Cloud Infrastructure – Monthly Update October 2023

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Logging Analytics: AIX support

Oracle Logging Analytics now supports log collection through AIX (PPC64). The following six Oracle-defined log sources are available to set up the log collection: 

  • AIX Syslog Logs    
  • AIX SU Logs    
  • AIX HACMP Cluster Logs    
  • AIX Dynamic System Optimizer Logs    
  • AIX Cron Logs     
  • AIX Audit Logs

SQL Firewall in Oracle Data Safe

The SQL Firewall feature of Oracle Data Safe lets you administer and monitor SQL Firewall for your Oracle Database 23c databases. Administrators can use Data Safe to collect SQL activities of database accounts, monitor the collection progress, create SQL Firewall policies with allowlist rules (allowed contexts and allowed SQL statements) from the collected SQL activities, and enable SQL Firewall policies. For more information, see SQL Firewall in the Using Oracle Data Safe guide.

Full Stack Disaster Recovery introduces new features, API changes, and is now available in new regions

The following new features are introduced in this release:

Use Database Management for MySQL HeatWave

You can now use Database Management to monitor and obtain comprehensive performance and configuration information for MySQL DB systems in the Oracle Cloud Infrastructure MySQL HeatWave service.

SQL Insights

SQL Insights provides a historical archive of detailed SQL performance data, as well as operationally useful insights derived from that data at the SQL statement, database and fleet levels. This telemetry is collected every 30 minutes and transferred into the Operations Insights warehouse where it is curated, persisted, and made available through data objects.

For more information see: SQL Insights

Media Streams now supports DASH for packaging

Oracle Cloud Infrastructure Media Streams now supports just-in-time packaging with DASH-IF v3. For more information, see Media Streams.

Support for Proxy Sessions

Database Tools service now supports proxy sessions for Oracle Database connections in Oracle Cloud Infrastructure.

NoSQL Database Cloud : : Global Active Tables expands the reach of your application

The following new feature is now available in Oracle NoSQL Database Cloud Service:

  • Global Active Tables: An active/active set of table replicas across a choice of cloud regions, for local read and write performance of globally distributed applications.  Additionally, it offers application resiliency and continuity with seamless Disaster Recovery (DR).

GoldenGate adds support for new connection types

OCI GoldenGate added support for nine new connection types. 

  • Google BigQuery
  • Google Cloud Storage
  • Redis
  • Amazon Redshift
  • Amazon Kinesis
  • Elasticsearch
  • Google Cloud SQL for SQL Server
  • SingleStoreDB
  • SingleStoreDB Cloud

Application Dependency Management service now supports Remediation

The Application Dependency Management (ADM) service introduces remediation support. You can create recipes that when run will detect Java vulnerabilities in the dependencies of their maven projects and have recommended updates to the version in use proposed and verified in a pull request that can be reviewed and merged. This will reduce the time and effort to detect and remediate vulnerabilities.

Announcement history for related announcements

Announcements associated with the same incident can now display as part of a single chain of messages. When viewed in the Console, related announcements with the same chain ID appear under the announcement history of a single announcement.

When viewed by a tenancy administrator in email, related announcements with the same chain ID appear as part of the same email thread.

Media Flow and Media Streams documentation is now available under Media Services

Media Flow and Media Streams documentation is now available under Media Services.

Media Services is a fully managed service for processing media (video) source content. It provides scalable distribution and origination for just-in-time packaged adaptive bitrate (ABR) video content. Media Services includes two components, Media Flow and Media Streams, which can be used independently or together and operate on the content stored in Object Storage.

Virtual node support for Kubernetes security contexts

Virtual nodes now support the following Kubernetes security contexts:

  • runAsNonRoot
  • runAsUser
  • runAsGroup
  • readOnlyRootFilesystem
  • allowPrivilegeEscalation=false

ZRCV – Retention Lock for Protected Database Backups

You can now enforce a lock for the backup retention period defined in a protection policy. When a retention lock is in effect, Recovery Service prohibits the modification or deletion of backups during the specified duration. The retention lock feature helps to protect your database backups from accidental or malicious damages such as ransomware.

Data Science – Storage mounts are introduced.

You can now specify File Storage service mount points or Object Storage service buckets in notebook sessions and jobs. This feature creates an automatic and secure configuration so that you can access data as if it were local to the machine without having to rewrite your applications. This simplifies the process of working with data store in your tenancy.

ZRCV – Create a Protected Database in a Dry-Run Mode

You can perform a dry run of the CreateProtectedDatabase API to verify that you meet all the prerequisites before creating a protected database. A dry run request returns error messages identifying the missing requirements and also indicates the recommended action to fulfill each requirement.

Accelerated Data Science 2.8.11 is released

The following changes were made in ADS 2.8.11:

  • Added support to mount file systems in Data Science notebook sessions and jobs.
  • Added support to cancel all job runs in the ADS api and opctl commands.
  • Updated ads.set_auth() to use both config and signer when provided.
  • Fixed a bug when initializing distributed training artifacts with the “Ray” framework.

Delayed Deletion of Protected Database Resources and Database Backups

Protected databases now have a new lifecycle state called Delete Scheduled.

A protected database resource enters the Delete Scheduled state after you terminate the source database or if you disable its automatic backups. Recovery Service delays the deletion of the protected database resource and the database backups for 72 hours, or until the backup retention period ends. This feature provides you an opportunity to recover data even after you terminate a database.

New Release of Network Firewall

This release includes the following enhancements:

  • Increased limits for policy components: Policy components were previously configured as attributes of the policy. The new version refactors policy components as separate objects with their own names. This allows for a large increase in the number of components you can have in each associated policy, and the ability to move components between lists within the policy.
  • Higher bandwidth for firewalls on demand: You can request an increase from 4Gbps to 25Gbps by opening a support request.
  • Regional High Availability: Choose whether to deploy your firewalls regionally or to a specific availability domain to optimize performance.
  • Operational improvements: Updating a firewall no longer causes a connection reset.
  • Bulk import policy components: You can now bulk import policy components using a .json file. You can import the maximum allowed components in one file. The Network Firewall service provides a .json template for each component type that you can download and use to construct an import file.
  • Easily reorder security and decryption rules: When you create or edit a rule, you can specify its position of the rule in relation to other rules in the policy. You can reorder rules during creation, when editing a rule, or you can reorder rules within the list shown in the policy details page.
  • Search for components: Because components are now independent objects, you can use the Search function to find them by name.
  • Easy migration: Use the provided upgrade workflow to quickly and easily upgrade your policies to the new version. When you upgrade your policies, any associated firewalls are also upgraded.

Database Migration introduces GoldenGate Service Integration for replication

For online migrations, now you do not need to create a GoldenGate Marketplace stack in your tenancy.
Just select the “Use online replication” option when creating a migration and the Database Migration service will seamlessly create and set up a service-managed GoldenGate instance for your online migration without any additional setup or cost.

Cache with Redis is now available

OCI Cache with Redis is a managed service that enables you to build and manage Redis clusters. Cache with Redis handles the management and operations of your clusters, including operations such as security updates. Learn more about Cache with Redis.

Operational metrics are now available in the Unified Monitoring Agent

The Logging service’s Unified Monitoring Agent now includes the option to enable several new operational metrics when creating or editing an agent configuration. You can use these metrics to help monitor and identify potential problems with the agent.

After any metrics are enabled, use the Metrics Explorer page to create a query to retrieve agent operational metrics from the Monitoring service, or create a Console Dashboard with the selected operational metrics. For more information, see Creating an Agent Configuration and this blog post.

New Release of OS Management Hub

This release includes the following enhancements:

  • Added software sources for Oracle Cloud Native Environment 1.7 and Oracle Linux Virtualization Manager 4.4 and 4.3.
  • Added support for Terraform.
  • Enhanced unregistration process to remove the unregistered instance from the service. See Unregister an Instance.
  • Updated job history reclamation policies. See Retention Policy.
  • Fixed an issue that prevented Ksplice updates from running. See Using Ksplice.
  • Fixed an issue with duplicate jobs appearing for management stations.
  • Fixed an issue with some packages showing as both available and installed.
  • Fixed an issue that prevented management station mirrors from displaying.
  • Fixed an issue where some update jobs failed to run due to dependency resolution.

OCI Vision now has Face Detection

Vision now has face detection. It identifies faces in images and their locations using bounding boxes. For each face it shows left eye, right eye, nose tip, left edge of mouth, and right edge of mouth. It also gives each face a visual quality score. Those with a high score are suitable for biometrics.

Base Database: Enhancements to Pluggable Database (PDB) management

You can now restore, relocate, and refresh Pluggable Databases in base database service from OCI Service console.

New release for Data Integration

You can now:

  • Export and import projects and their contents, and individual folders, tasks, data flows, and pipelines.
  • Export and import function libraries and their user-defined functions, and individual functions.
  • Customize and parameterize the allocated number of OCPUs and amount of memory when you use a flexible driver and executor shape in an OCI Data Flow task.
  • Disable simultaneous running of a task when the task run is initiated manually or by a task schedule. This feature is available in the graphical user interface only.
  • View all task run statistics on the monitoring workspace page.
  • Use the OCI Logging Search page to search Data Integration logs for integration, data loader, REST, SQL, and pipeline task runs.

Publisher is now available

With the introduction of Oracle Cloud Infrastructure Publisher, you can manage artifacts, listings and terms in Oracle Cloud Infrastructure Marketplace. For more information, see Overview of Publisher.

Marketplace now supports work requests and exporting artifacts

You can now export container images and helm charts into your tenancy. The image will be available in the OCI Registry to launch it. Marketplace now offers information on each operation via work requests. See Work Requests.

New Release of VCN Flow Logs

You can now use capture filters to generate flow logs only for traffic you specify:

  • Enable flow logs for all VNICs in a VCN or subnet, or target specific instances, network load balancers, or resource VNICs as enablement points.
  • Specify the percentage of network flows to capture (sampling rate).
  • Create up to 10 rules to include or exclude traffic based on criteria you specify.  For example, you can include or exclude traffic based on source or destination IP address or CIDR block, IP protocol, or whether it is part of ingress or egress traffic.

Set Up Alarm Definitions in Database Management

You can now set up alarm definitions in Database Management to simplify the process of creating and managing alarms.

Using the Alarm definitions feature, you can:

  • Use the preconfigured set of rules and thresholds to quickly create Oracle-recommended alarms for common operational scenarios for your databases. If you want to use the complete set of options available to create an alarm, you can navigate to the Oracle Cloud Infrastructure Monitoring service and create a custom alarm.
  • Edit the previously configured alarm values to customize the alarm to meet specific requirements.
  • Clone alarms to standardize monitoring settings across multiple databases.

Operations Insights Full Autonomous Database Support

Operations Insights Full Features collection is now available for all Autonomous Database (ADB) Types. Full Features collection includes SQL Explorer and ADDM Spotlight for all ADB Serverless (access anywhere, private endpoint, and ACL restricted), and ADB Dedicated databases. 

MySQL HeatWave: Read Replicas with different Shapes, Configurations, and Versions

You now have enhanced flexibility using read replicas in MySQL HeatWave with different shapes, configurations, and versions. There are several uses and advantages for this feature:

  • Use specific configurations to tailor read replicas for read-only operations, so you can optimize performance and resource utilization. Additionally, before implementing significant changes, use distinct replicas to validate configurations. This proactive approach not only ensures business continuity but also strengthens operational reliability.
  • Change the shape of read replicas individually to select appropriate compute resources for your workload and to enable broader elasticity for read operations.
  • First, update the MySQL version on replicas, validate, and then upgrade other instances. This practice improves upgrade strategy, change management, and risk mitigation.

To start using customized read replicas, navigate to Resources > Read Replicas in the Console and find new options when creating or editing a Read Replica.

OKE – Support for Kubernetes volume clones

The CSI volume plugin now supports the use of Kubernetes volume clones (provisioned by block volume clones in the Block Volume service) to provision new persistent volumes.

A Kubernetes clone is an exact duplicate of an existing persistent volume on a storage system. You can clone an existing persistent volume to provision a new persistent volume claim. The new persistent volume contains a copy of the data from the source persistent volume, but is independent of the source persistent volume. Volume clones can be used to rapidly test configuration changes without impacting the production environment.

Data Science Service – Private endpoint to access notebook sessions

You can now configure a private endpoint in your tenancy. Use a private endpoint to access one or more notebook sessions for additional internet security.

GoldenGate now supports IAM with Identity Domains

GoldenGate now supports Identity Access Management (IAM) with Identity Domains. Ensure that you add the appropriate policies and create a Vault before you create new OCI GoldenGate deployments. 

Big Data Service 3.0.25 has added additional features

Updated Working with Big Data Service Component help

  • Using Apache Oozie
  • Using Apache Spark 
  • Using Apache Hue
  • Using HBase

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.

Oracle Cloud Infrastructure – Monthly Update September 2023

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

Support for External Key Management System

OCI External Key Management Service (External KMS) enables you to securely store and control keys on a third-party key management system outside OCI. You can then use the external key for encrypting/decrypting data in Oracle. With the actual key residing in the third-party key management system, you control the administration and management of your keys. OCI External KMS forwards your cryptographic operations to the third-party key management system (for example, Thales CipherTrust Manager). This service is for customers who have regulatory compliance to store keys outside the Oracle Cloud or any third-party cloud premises.

Introducing OCI Key Management and OCI Secret Management

On the OCI Console, the OCI Vault service and OCI External Key Management service are now under a new category, Key Management & Secret Management. As the portfolio of OCI Key Management increases, this grouping  better consolidates all the capabilities for both Keys and Secrets.

Base Database: Oracle Database 23c on Base Database Service

Oracle Database 23c is the next long term support release of Oracle Database, and it is now available on the Base Database Service.

Generative AI is now in Beta

OCI Generative AI (Beta) is a fully managed service that provides a set of state-of-the-art, customizable large language models that cover a wide range of use cases for text generation. Use the playground to try out the models out-of-the-box or create and host your own fine-tuned custom models based on your own data on dedicated AI clusters.

To access the service in Beta, sign up through the Beta program. For information about the service, see the Generative AI documentation.

Search with OpenSearch now supports OpenSearch Dashboards multi-tenancy

OCI Search with OpenSearch now supports OpenSearch Dashboards multi-tenancy. For more information, see Multi-tenancy in Search with OpenSearch. OpenSearch Dashboards multi-tenancy – OpenSearch documentation

Support for Container Engine for Kubernetes service logs

You can now use Oracle Cloud Infrastructure Logging to view and search the logs of Kubernetes processes (such as kube-scheduler, kube-controller-manager, cloud-controller-manager, and kube-apiserver) running on the control plane of clusters you’ve created with Container Engine for Kubernetes (OKE).

Support for virtual nodes running pods on Arm shapes

You can now specify that virtual nodes are to run Kubernetes pods on Arm processors.

Container Instances now support Arm-based Ampere A1.Flex shape

CI.Standard.A1.Flex is a new flexible shape available with Container Instances. You can now run your applications on Arm-based processors using this shape. For more information, see Container Instances Shapes.

IPv6 addressing at Compute instance launch

You may now assign IPv6 addresses to VNICs attached to your Compute instance during launch.  Assigned IP addresses will be available to access the instance immediately after launch.

In order to enable an instance with IPv6, the VCN and subnet in which the instance is launched must be configured with IPv6 addresses.

Metric values in alarm messages

The “Metric values” section is now available in alarm messages for all notification destinations except for SMS. Metric values are included for both grouped and split notifications.

Use a message’s metric values to determine if the resource needs attention now. For example, consider an alarm that triggers at 70% CPU utilization. If the metric value is 95%, then you would probably want to attend to the resource as soon as possible. If the metric value is 71%, then you might decide to ignore it.

Support for Kubernetes version 1.26.7

Container Engine for Kubernetes now supports Kubernetes version 1.26.7, in addition to versions 1.27.2 and 1.25.12. With the availability of support for Kubernetes version 1.26.7, Container Engine for Kubernetes will cease support for Kubernetes version 1.26.2 on October 13, 2023. Oracle strongly recommends you immediately upgrade clusters to Kubernetes version 1.26.7.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.

Oracle Cloud Infrastructure – Monthly Update August 2023

Below are the major new updates in Oracle Cloud Infrastructure Gen2 Platform.

IPSec over FastConnect is now available

You can now provision Site-to-Site VPN over your FastConnect virtual circuits rather than over the public internet. See FastConnect Security for more details.

MACSEC on FastConnect now allows Fail Open mode

MACSEC for FastConnect now allows Fail Open mode. This would allow unencrypted traffic to flow on the FastConnect virtual circuit when the MACSEC session goes down. See FastConnect Security for more details.

Cloud Guard Adds an Activity Detector

Cloud Guard has added the “Local user authenticated without MFA” rule to its OCI Activity Detector recipe. This rule alerts you when a user is authenticated with only a single authentication factor, such as a password. For particularly sensitive resources, a security best practice is to require a second authentication factor, such as supplying a code that’s sent to the udeer’s email address or phone number. See Local user authenticated without MFA.

Exadata Database on Dedicated Infrastructure: Cancel a Running Full or Incremental Backup

You now have the ability to cancel an ongoing backup, allowing you to free up system resources. You will no longer have to call the operations team to have this backup job canceled.

As part of the Create Database workflow and independently (after the database has been created), you may enable Automatic Backup and select the desired backup destination. Depending on the backup destination selected, you may have one or more full backups and several incremental backups. Once any of these backups have started, you will not have the option to cancel that backup midway.

This feature allows you to cancel any running backup (automatic or standalone) from the OCI console or via OCI API.

You can also:

  • Cancel a manual backup, which is triggered when you click the Create backup buttonNote: All manual backups are full backups.
  • Delete a canceled manual backup

Base Database: Autonomous Recovery Service as the Default Backup Destination

You now have default limits for Autonomous Recovery Service without having to request them. This is now available in the following regions: GRU Sao Paulo, VCP Vinhedo, YUL Montreal, YYZ Toronto, HYD Hyderabad, and BOM Mumbai. Other regions will be added in phased manner.

For more information, see Back Up a Database Using the Console.

Support for vSphere version 8.0

Oracle Cloud Infrastructure VMware Solution now supports vSphere version 8.0 when you provision a new SDDC and ESXi hosts. 

Security settings for Container Instances

When you create a container instance, you can specify the security context settings for each container. You can set the User ID, Group ID, to run as non-root user, and to enable read-only root filesystem.

Thank you for visiting this blog.

Disclaimer : The views expressed on this blog are my own and do not reflect the views of the companies I work, The opinions give by visitors on this site are there own opinions.