Patching the VMware vSphere hypervisor and updating the CPU Microcode (which the vSphere patches will do for the processors described in the below table will allow guest operating systems to use hardware support for branch target mitigation.
To enable hardware support for branch target mitigation in vSphere, apply these steps, in the order shown:
Note: Ensure vCenter Server is updated first, for more information, see the vMotion and EVC Information section.
Vendor | Code Name | FMS | Plt ID | MCU Rev | VMware VCG Name |
---|---|---|---|---|---|
Intel | Sandy Bridge DT | 0x206a7 | 12 | 0x2d | Intel Xeon E3-1100 Series; Intel Xeon E3-1200 Series; Intel i7-2655-LE Series; Intel i3-2100 Series |
Intel | Sandy Bridge EP | 0x206d7 | 6d | 0x713 | Intel Xeon E5-1400 Series; Intel Xeon E5-1600 Series; Intel Xeon E5-2400 Series; Intel Xeon E5-2600 Series; Intel Xeon E5-4600 Series; Intel Pentium 1400 Series |
Intel | Ivy Bridge DT | 0x306a9 | 12 | 0x1f | Intel Xeon E3-1100-C-v2 Series; Intel Xeon E3-1200-v2 Series; Intel i3-3200 Series; Intel i7-3500-LE/UE; Intel i7-3600-QE; Intel Pentium B925C |
Intel | Ivy Bridge EP | 0x306e4 | ed | 0x42c | Intel Xeon E5-4600-v2 Series; Intel Xeon E5-2400-v2 Series; Intel Xeon E5-2600-v2 Series; Intel Xeon E5-1400-v2 Series; Intel Xeon E5-2600-v2 Series |
Intel | Ivy Bridge EX | 0x306e7 | ed | 0x713 | Intel Xeon E7-8800/4800/2800-v2 Series |
Intel | Haswell DT | 0x306c3 | 32 | 0x24 | Intel Xeon E3-1200-v3 Series; Intel i7-4700 EQ Series; Intel i3-4300 Series; Intel i5-4500-TE Series |
Intel | Haswell EP | 0x306f2 | 6f | 0x3c | Intel Xeon E5-2400-v3 Series; Intel Xeon E5-1400-v3 Series; Intel Xeon E5-1600-v3 Series; Intel Xeon E5-2600-v3 Series; Intel Xeon E5-4600-v3 Series |
Intel | Haswell EX | 0x306f4 | 80 | 0x11 | Intel Xeon E7-8800/4800-v3 Series |
Intel | Broadwell H | 0x40671 | 22 | 0x1d | Intel Xeon E3-1200-v4 Series; Intel Core i7-5700EQ |
Intel | Broadwell EP/EX | 0x406f1 | ef | 0xb00002a | Intel Xeon E7-8800/4800-v4 Series; Intel Xeon E5-4600-v4 Series; Intel Xeon E5-2600-v4 Series; Intel Xeon E5-1600-v4 Series |
Intel | Broadwell DE | 0x50662 | 10 | 0x15 | Intel Xeon D-1500 Series |
Intel | Broadwell DE | 0x50663 | 10 | 0x7000012 | Intel Xeon D-1500 Series |
Intel | Broadwell DE | 0x50664 | 10 | 0xf000011 | Intel Xeon D-1500 Series |
Intel | Broadwell NS | 0x50665 | 10 | 0xe000009 | Intel Xeon D-1500 Series |
Intel | Skylake H/S | 0x506e3 | 36 | 0xc2 | Intel Xeon E3-1500-v5 Series; Intel Xeon E3-1200-v5 Series |
Intel | Skylake SP | 0x50654 | b7 | 0x2000043 | Intel Xeon Platinum 8100 (Skylake-SP) Series; Intel Xeon Gold 6100/5100, Silver 4100, Bronze 3100 (Skylake-SP) Series |
Intel | Kaby Lake H/S/X | 0x906e9 | 2a | 0x84 | Intel Xeon E3-1200-v6 |
AMD | Zen EPYC | 0x800f12 | n/a | 0x8001227 | AMD EPYC 7xx1 Series |