Different levels of security can be configured in the Management Pack for Dell EMC PowerMax and VMAX. The least secure configuration is to leave the SSL Trust Store Path field in the Advanced Settings blank. In this configuration, the Management Pack will accept all SSL certificates. For added security, you can enable SSL by following the instructions below and entering the path to the Trust Store in the SSL Trust Store Path field in the Advanced Settings.
Obtain the SSL certificate for your VMAX host server from your Internet browser. Export the certificate as an X.509 Certificate (PEM).
Copy the certificate to your VMware Aria Operations machine.
Use ‘ssh’ to log in to the VMware Aria Operations machine as the root user, then run the following command:
Linux:
$VCOPS_BASE/jre/bin/keytool -import -alias <product_alias> -file /tmp/<certfile> -keystore "$VCOPS_DATA_VCOPS/user/conf/ssl/tcserver.truststore" -storepass `grep ssltruststorePassword /storage/vcops/user/conf/ssl/storePass.properties | sed s/ssltruststorePassword=//` -trustcacerts
Windows:
%VCOPS_BASE%\jre\bin\keytool -import -alias <product_alias> C:\path\to\certfile -keystore “%VCOPS_DATA_VCOPS%\user\conf\ssl\tcserver.truststore” -storepass <truststore_password> -trustcacerts
Note:The <truststore_password> is generated by VMware Aria Operations and is located in/storage/vcops/user/conf/ssl/storePass.properties. Copy the password from thessltruststorePassword= field and paste it in the <truststore_password> placeholder.
Parameter Descriptions:
product_alias is a unique name for each key that you add (per host)
certfile is the location where the cert file was saved
Run the reboot command to re-start the VMware Aria Operations machine for the changes to take effect.