Unable to Activate Firewall Hardening in Aria Operations
search cancel

Unable to Activate Firewall Hardening in Aria Operations

book

Article ID: 402488

calendar_today

Updated On:

Products

VMware Aria Suite

Issue/Introduction

After enabling firewall hardening, the UI becomes inaccessible and system status fails to load on the Admin Console, preventing any login.

Environment

Aria Operations 8.18.x

Cause

The forceIpv6 flag is missing from the ovfEnv configuration on all nodes.

Resolution

The "forceIpv6" flag is missing in ovfEnv configuration in nodes.

As a workaround the "forceIpv6" flag should be added in OVF env. 

1. Disable Firewall Hardening (if it's still in failed state)
2. Take cluster offline
3. Power OFF all the VMs
4. In vCenter server's vApp options for each VM, add the forceIpv6 field and set it to False:

Category Label  Key Class Key ID  Key Instance ID Description  Type
Application IPv6 forceIpv6     Use IPv6 DHCP. If IPv6 DHCP is not available, configuration will not succeed. Static property 
Type: Boolean
Default value: False 
User configurable: Yes
 
5. Power ON all the VMs 
6. Bring the cluster online 
7. Enable Firewall Hardening
 
 
 
Note: The issue is known to us and is expected to get fixed in future release of VCF 9.x.