7.3

Table Of Contents
3 Near the upper right, click the button to enable or disable FIPS.
When enabled, inbound and outbound vRealize Automation appliance network traffic on port 443
uses FIPS 140–2 compliant encryption. Regardless of the FIPS setting, vRealize Automation uses
AES–256 compliant algorithms to protect secured data stored on the vRealize Automation appliance.
Note This vRealize Automation release only partially enables FIPS compliance, because some
internal components do not yet use certified cryptographic modules. In cases where certified modules
have not yet been implemented, the AES–256 compliant algorithms are used.
4 Click Yes to restart vRealize Automation.
You can also configure FIPS from a vRealize Automation appliance console session as root, using the
following commands.
vcac-vami fips enable
vcac-vami fips disable
vcac-vami fips status
Enable Automatic Manager Service Failover
Automatic Manager Service failover is disabled by default if you install or upgrade the Manager Service
with the standard vRealize Automation Windows installer.
To enable automatic Manager Service failover after running the standard Windows installer, take the
following steps.
Procedure
1 Log in as root to a console session on the vRealize Automation appliance.
2 Navigate to the following directory.
/usr/lib/vcac/tools/vami/commands
3 Enter the following command.
python ./manager-service-automatic-failover ENABLE
If you need to disable automatic failover throughout an IaaS deployment, enter the following command
instead.
python ./manager-service-automatic-failover DISABLE
About Automatic Manager Service Failover
You can configure the vRealize Automation IaaS Manager Service to automatically fail over to a backup if
the primary Manager Service stops.
Installing vRealize Automation
VMware, Inc. 132