
Management of the TLS protocol configuration for vSphere 6.5 U2
Environment
As of March 2019, TLS v1.0 and TLS v1.1 are disabled in Avaya Converged Platform 130 servers
shipping from the Avaya integrator. TLS v1.0 and TLS v1.1 on servers shipped prior to March
2019 might be enabled. This section provides instructions for disabling TLS v1.0 and TLS v1.1.
Using the vCenter application
Management of the TLS protocol configuration requires direct interaction with the
vCenter
application. The standard Avaya Converged Platform 130 offer does not include vCenter. Since
the ACP 130 server will most likely not have vCenter deployed, you can temporary use the free
version of the application.
Download a free 60–day trial of vCenter from the VMware website:
vmware/details?productId=614&downloadGroup=VC650
TLS protocol management
This section covers the process for disabling TLS v1.0 and TLS v1.1 and enabling TLS v1.2 only
within the vCenter Server Appliance and ESXi host. By default, TLS v1.0, v1.1 and v1.2 are
enabled, TLS v1.2 cannot be disabled. Use
TLS Reconfigurator Utility Tool
to enable and
disable TLS protocols. You can download the tool from the VMware website.
Note:
If you have your ACP 130 server shipped and provided prior to the end of March 2019, you
must disable TLS v1.0 and v1.1 and enable only TLS v1.2 by following the procedures in this
section.
For more information on TLS, see the VMware Knowledge Base article:
Related links
Installing the TLS Reconfigurator Utility Tool
on page 53
Configuring TLS v1.2 only for vCenter Server Appliance and Platform Services Controller
Appliance
Configuring TLS v1.2 only for an individual ESXi host
on page 55
Validating TLS v1.0 and v1.1 disablement on an ESXi Host
on page 56
Installing the TLS Reconfigurator Utility Tool
About this task
For vCenter Server Appliance 6.5 U2, the version of the TLS Reconfigurator Utility Tool to install
will be the following:
VMware-vSphereTlsReconfigurator-6.5.0-7766806.x86_64.rpm
Configuration
October 2019
Installing the Avaya Converged Platform 130 Series
52