7.2

Table Of Contents
Table 210. Sample Certificate Values and Commands (openssl)
Certificate Authority
Provides Command Virtual Appliance Entries
RSA Private Key openssl pkcs12 -in path _to_.pfx
certicate_le -nocerts -out key.pem
RSA Private Key
PEM File openssl pkcs12 -in path _to_.pfx
certicate_le -clcerts -nokeys -out
cert.pem
 Chain
(Optional) Pass Phrase n/a Pass Phrase
Security Passphrase
vRealize Automation uses security passphrases for database security. A passphrase is a series of words used
to create a phrase that generates the encryption key that protects data while at rest in the database.
Follow these guidelines when creating a security passphrase for the rst time.
n
Use the same passphrase across the entire installation to ensure that each component has the same
encryption key.
n
Use a phrase that is greater than eight characters long.
n
Include uppercase, lowercase and numeric characters, and symbols.
n
Memorize the passphrase or keep it in a safe place. The passphrase is required to restore database
information in the event of a system failure or to add components after initial installation. Without the
passphrase, you cannot restore successfully.
Third-Party Software
Some components of vRealize Automation depend on third-party software, including Microsoft Windows
and SQL Server. To guard against security vulnerabilities in third-party products, ensure that your software
is up-to-date with the latest patches from the vendor.
Time Synchronization
A system administrator must set up accurate timekeeping as part of the vRealize Automation installation.
Installation fails if time synchronization is set up incorrectly.
Timekeeping must be consistent and synchronized across the vRealize Automation appliance and Windows
servers. By using the same timekeeping method for each component, you can ensure this consistency.
For virtual machines, you can use the following methods:
n
Conguration by using Network Time Protocol (directly).
n
Conguration by using Network Time Protocol through ESXi with VMware Tools. You must have NTP
set up on the ESXi.
For more about timekeeping on Windows, see VMware Knowledge Base article 1318.
Chapter 2 Preparing for vRealize Automation Installation
VMware, Inc. 31