Hello,
I recently upgraded to vShere 6 (6.0 U1) , I created a new vRo appliance (7.0.1) and imported all the workflows from vCO 5.5. The vRO appliance works fine but there is an integration issue with the web client. I have followed the workflows to add the extension to the web client, and they completed successfully.
https://orchestration.io/2015/09/28/deploying-vrealize-orchestrator-6-0-3/
Unfortunately I can't get the vRO server to show on the weblcient. Looking at the vsphere_client_virgo.log I noticed the following entries:
When I go to the vCenter I can download the package without problems, I even added the self signed cert to the server to avoid the security warning.
Any help on this matter is highly appreciated.
Thank you,
Juan.
For security reasons (POODLE attack and others) vRO 7.0.1 has TLSv1 protocol disabled by default. So if a client application like Web Client tries to open a connection using TLSv1, it will be rejected.
There are 2 option to work around this issue:
sslEnabledProtocols="TLSv1.1, TLSv1.2"
with
sslEnabledProtocols="TLSv1, TLSv1.1, TLSv1.2"
After that you'll need to restart vRO service for changes to take effect, using the following Linux command:
service vco-server restart
For security reasons (POODLE attack and others) vRO 7.0.1 has TLSv1 protocol disabled by default. So if a client application like Web Client tries to open a connection using TLSv1, it will be rejected.
There are 2 option to work around this issue:
sslEnabledProtocols="TLSv1.1, TLSv1.2"
with
sslEnabledProtocols="TLSv1, TLSv1.1, TLSv1.2"
After that you'll need to restart vRO service for changes to take effect, using the following Linux command:
service vco-server restart
Thank you so much. After modifying the /etc/vco/app-server/server.xml file and restarting the webclient service the vRO server shows up on the webclient.
Now, a bit off the topic, I have 5 vCenters on enhanced linked mode, do I have to register each one to vRO in order to run workflows from them?
Regards,
Juan.
Ilian - I upgrade to VRA 7.2 and am using the integrate VRO instance. When I go to the server.xml file to enable TLSv1, I notice that there is no relevant SSL section in the config? Is there a different procedure in enabling TLSv1 when it is the bundled VRO instance on a VRA appliance? Thanks!