VMware Home Lab Tokens - 夜莺博客

VMware Home Lab Tokens

原文:VMware Home Lab Tokens — theDXT (Daniel Keer)

VMware by Broadcom has now enabled home labs to generate tokens and license VCF 9.

Before the change, when you passed a VCP VCF exam, you were eligible for vSphere 8 and VCF 5.2 license keys, but you couldn’t create any tokens, which prevented you from using VCF 9 beyond the 90-day trial.

In this post, I will show you step-by-step how to generate a Broadcom token you can use in your home lab.

What Changed, and Why It Matters

For years, passing a VCP exam gave you something concrete: entitlement to home lab license keys. With the Broadcom transition, that entitlement briefly became harder to use. You could still obtain vSphere 8 and VCF 5.2 license keys after passing a VCP VCF exam, but you could not generate a download token — and without a token there was no way to pull VCF 9 software from the online depot or license it beyond the 90-day evaluation period.

The change described in this post removes that gap. Home labs can now generate download tokens, which means a home lab can be built the same way a customer builds a production environment: install the VCF Installer, connect it to the Broadcom depot with a token, download the bits, deploy, and then license the environment properly. If your home lab has been sitting on an expired trial because the depot would not authenticate, this is the fix.

Keep one distinction in mind throughout: this article is about the download token that authenticates your depots and ties your entitlement to your account. VCF 9 licensing itself is a separate mechanism covered further down — subscription-based license files managed through VCF Operations rather than the 25-character keys used by vSphere 8 and earlier.

Prerequisites

  • VMUG Advantage subscription.
  • Pass a VCP VCF exam.

If you need help studying for the VCP VCF Admin exam, my blog post Passing VCP-VCF Admin Exam goes into detail on how I passed.

  • Complete the home lab licensing process.

My blog post, VMware Home Lab Licensing, goes into detail.

The Process

  • Using the same account you used to complete the home lab licensing process, log in to the Broadcom Support portal https://support.broadcom.com/

Image 1

Image 2

  • You will get a message that additional verification is required. Click Yes.

Image 3

  • Fill out the requested information with your real personal information as much as possible.

Image 4

VMware by Broadcom uses the company Alpine Testing Solutions for exams and certification benefits for home labs. Because of this, you will see that the company name is set to Alpine Testing Solutions, and you can not change it. Because Alpine is based in the USA, you also can’t change the country.

What I did was fill out everything with my correct personal information, except the country, as I am from Canada, and I couldn’t change it.

  • Once your account verification is completed, click on Generate Token again.

Image 5

  • Once the Generate Download Token page loads, click on Generate Token.

Image 6

  • Enter a description if you’d like and click Submit.

I will enter theDXT VCF Home Lab as my description.

Image 7

  • You will now see the token that you generated.

Image 8

The expiry date you see is the date that you passed your VCP exam.

You can now use this token in your home lab, giving you access to downloads and the ability to license VCF 9.

For more information about generating home lab tokens, check out the VMware Code blog, specifically the postVMUG Advantage Home Lab License Guideby Eric Nielsen.

What the Token Actually Unlocks

A download token is a long credential string tied to your entitlement, not a license key. Practically, generating one gives you three things:

  • Depot access. The VCF Installer and VCF Operations can authenticate to the Broadcom online depot and download VMware Cloud Foundation binaries — the installer appliance no longer ships with the bits included, so a token is what makes the download possible.
  • Entitlement recognition. Token generation only succeeds if your account is recognised as having the certification/VMUG Advantage benefit, which is a useful proof that your account linkage is correct before you spend an evening on a failed deployment.
  • Access to license keys/files. The same entitlement that issues tokens is the one that makes vSphere 8 and VCF 5.2 keys, or the VCF 9 license file, available to you.

It does not replace licensing. A token in the depot lets you download and install; the license file applied through VCF Operations is what stops the environment from counting down its 90-day evaluation clock.

Where the Token Goes: VCF Installer and VCF Operations

Two places in a VCF 9 home lab need the token. Setting it once and forgetting the second is the most common reason people report that "the token does not work":

  1. VCF Installer (formerly Cloud Builder). After deploying the appliance, open Depot Settings, choose to connect to the online depot, paste the token and authenticate. If the appliance can reach the Internet, the depot comes up and your product list populates.
  2. VCF Operations. Under Fleet Management → Lifecycle → Depot Configuration, add the download token the same way you would add a credential. Without it, Operations cannot pull the fleet components it manages, even though the initial deployment worked.

Treat the token as a secret. It carries your entitlement, so store it in a password manager rather than in a text file on the jump host, and remember that regenerating it invalidates the old value anywhere it was pasted.

Account Hygiene: Why a Token Sometimes Never Appears

Token generation lives at the intersection of three accounts, and it only works when they agree:

  • Your Broadcom Support Portal account. This is where you sign in and generate the token.
  • Your certification identity. Exams and certification benefits are administered through Broadcom's testing partner, Alpine Testing Solutions — which is why the company name on the verification form is Alpine and cannot be changed, and why the country defaults according to that US-based entity rather than your own location. Fill in your real personal details as the source article advises; changing the company or country is not possible, and a deliberately false entry risks the verification step.
  • Your VMUG Advantage account. This is the piece most people get wrong. The email address on your VMUG Advantage subscription must match the email associated with your Broadcom certification account. If they differ, the entitlement is not seen and the Generate Token button leads nowhere useful.

If you have more than one Broadcom login from a previous VMware career, consolidate before you start. One entitlement, one identity, one token source.

Verification Checklist Before You Deploy

  1. You have an active VMUG Advantage subscription.
  2. You have passed a current VCP-VCF exam (the credential will be listed in your Broadcom certification record).
  3. The email on VMUG Advantage matches the email on your Broadcom certification record.
  4. You can sign in to the Broadcom Support Portal with the account that holds the entitlement.
  5. Token generation completes and the resulting token is stored somewhere safe.
  6. The token authenticates successfully in the VCF Installer depot settings.
  7. The same token is added in VCF Operations depot configuration.
  8. You know your entitlement expiry date — the token screen shows the date your VCP exam was passed, and that is the date the benefit is anchored to.

Working through this list takes ten minutes. Discovering item three after a failed deployment costs an evening.

Common Problems and What They Mean

  • "Generate Token" does nothing / the page reloads. Almost always the identity mismatch: VMUG Advantage email not equal to certification email, or an entitlement that has lapsed.
  • Verification was requested and never completed. The Alpine Testing Solutions profile form must be filled in and submitted before the token step will proceed. Complete it with your real details, accept the fixed company and country fields, and try again.
  • The Installer depot will not authenticate. Check outbound HTTPS access from the appliance, and paste the token without a trailing newline or space — copy/paste artefacts are a genuinely common cause.
  • The depot works but the deployment fails later. That is not a licensing problem; it is usually DNS, time skew or certificate trust inside the lab. Fix name resolution and NTP first.
  • Deployment succeeded but the environment says it is in evaluation. Expected until you complete VCF Operations registration and apply the license file — the token only handles downloads.

Notice that none of these are cured by regenerating the token. Regenerating is worth trying once, but if the second token behaves identically the problem is your account linkage or your network, not the string itself.

Expiry, Renewal and VMUG Advantage

Home lab licensing is deliberately time-boxed. The license itself is valid for 365 days and is explicitly for non-production use; a VMUG Advantage subscription is what lets you renew it, and the combination is intended to keep the benefit with people who are actively maintaining a lab and their certifications. The token screen's expiry field is anchored to the date you passed your VCP exam, so plan your lab rebuilds around that date rather than around the moment the lab first complained.

Two practical habits keep a home lab alive across licensing cycles: record the expiry date somewhere you will actually see it (a lab documentation page or a calendar reminder a month out), and never use home lab licensing for anything carrying real data or real services — the entitlement does not permit it, and the practical consequences of a lapsed licence in a lab you depend on are worse than the cost of doing it properly.

Fitting This Into a Home Lab Build

The token is one step in a longer sequence: hardware and nested-virtualisation decisions come first, then networking, then the management stack, then licensing. If you are starting from scratch, pair this article with VMware Home Lab Licensing for the entitlement mechanics, VMware ESXi vSwitch: port groups, VLAN IDs and teaming for the network side of the lab, and Passing the VCP-VCF Admin exam if the exam is the step you are still missing — scheduling the VMware exam is covered separately.

Once the token is generated and stored, the rest of the build is ordinary engineering: size the management cluster, get DNS and time right, deploy the installer, and license the environment before the evaluation window runs out.