VMware Workspace ONE Community
AnthonyCardona
Contributor
Contributor

UAG FIPS Setup admin console not coming up .

Just finished deploying the UAG OVF and I am able to communicate and SSH into it but I cannot access the https://FQDN-of-UAG-appliance from my browser just times out page cannot be displayed. I did re-deploy the OVF file again and I get the same issue. All network Pre-Req's are met but I am still having the same issue. There is something at the bottom of the ova installation guide that states '  If deployment was successful, you see the Web page provided by the server that Unified Access Gateway is pointing to. If deployment was not successful, you can delete the appliance virtual machine and deploy the appliance again. The most common error is not entering certificate thumbprints correctly. '  It says most common error but in the configuration portion it says nothing about thumbprint configurations. https://docs.vmware.com/en/Unified-Access-Gateway/3.8/com.vmware.uag-38-deploy-config.doc/GUID-537BD... Any help would be greatly appriciated . On Prem UAG 3.7.2.0

Labels (1)
0 Kudos
4 Replies
Mario_Giese
Enthusiast
Enthusiast

Hi,


how many NICs you deployed? If more than one the Admin Page is just reachable on the Management NIC (NIC2 eth1, if I remember this correctly).
And you need to use the port 9443 -> https:// FQDNofUAGappliance:9443.



BR Mario

0 Kudos
AnthonyCardona
Contributor
Contributor

Only configured with single nic.  I didn't know it since we are just using a basic configuration.  Wonder if I should re-install with two nics .  Should they both be using the same IP also ?
0 Kudos
AnthonyCardona
Contributor
Contributor

Also whats weird is that the server hostname changes automagiclly to a really long name such as  '  uag-235a5817-91a7-49bd-ac97-f0cfc5ea71a7 '  when intially was ' vmware-photon '  or something like that .  
0 Kudos
Mario_Giese
Enthusiast
Enthusiast

Hi,


number of NICs depends on how your network is designed. with 2 NICs you have productive NIC and management NIC to seperate the network traffic on two networks. If you install it with one NIC you should be able to access the admin page with https://IP_or_DNS_Name_of_UAG:9443/.
Maybe you forgot to enter routes? On the CLI on the UAG you can install tcpdump with this command: /etc/vmware/gss-support/install.sh to check if packets arrive at the UAG. Check if you can reach the UAG on port 9443 from the same subnet.
Also you can check if the IPs are set correctly on the UAG with this command: /opt/vmware/share/vami/vami_config_net


0 Kudos