So...
I have vShield deployed. vshield has a vApp VM which resides on each host. When i put a host into maintenance mode, that vapp will automatically power down (it's the last one to shut off), and when that host comes out of maint mode, that VM automatically powers back on. Works great. never gets DRS'ed off the host, doesn't move on maintenance mode (get registered with another host)..
There are NO DRS affinity rules defined for this vapp, or any other type of affinity setting i can see. this works regardless of DRS settings on the cluster.
next, Trend deep security (or any other AV which uses endpoint), also has an agent VM which must be deployed to each host.
I have setup affinity rules to keep the apps on their individual host (which is annoying, as you have to create a group for each host, and a group for each app, then link the two together)..
this accomplishes the keeping the VM on the host.. however, when you enter maintenance mode, you have to manually power down this VM before the host can successfully enter maint mode.
I would love to have the Trend VM behave in the same manner as the vShield VM, but not sure how the vShield vm accomplishes the automation which it does.
Anyone have any ideas?
Thanks