Enabling SSL 3.0 for App Visibility Manager


Some application servers do not support TLS and therefore require SSL 3.0 communication, which is disabled by default for App Visibility Manager internal communication, to protect against the POODLE vulnerability.

Warning

If your system requires SSL 3.0 communication and the POODLE vulnerability is not a concern for your environment, use the following procedure to enable SSL 3.0.

  1. Open the properties file for each component in a text editor:
    • Portal: portal_installationDirectory\portal\properties\portal.properties
    • Each collector: collector_installationDirectory\collector\properties\collector.properties
  2. Comment out (add a # character to the beginning of the line) the tomcat.ciphers property.
  3. Add SSLv3 to the list of tomcat.ssl.enabled.protocols property and save the file.
  4. Open the java.security file on each computer, located in the installationDirectory/ADOP_JRE/lib/security directory.
  5. Remove SSLv3 from the list of the jdk.tls.disabledAlgorithms property and save the file.
  6. Restart the service.

After a few minutes, the agents can connect to the portal and collector.

Related topics

Enabling-communication-between-App-Visibility-agents-and-server-components

Changing-App-Visibility-portal-settings

Starting-and-stopping-the-App-Visibility-server-services

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*