Thanks Paul,
So the symbolic link has then been removed, as per the below. Not quite sure where to go from here.
Anton Louw
Cloud Engineer: Storage and Virtualization
______________________________________
D: 087 805 1572 | M: N/A
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
anton.louw(a)voxtelecom.co.za
www.vox.co.za
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk>
Sent: 12 June 2020 12:30
To: Anton Louw <Anton.Louw(a)voxtelecom.co.za>; users(a)ovirt.org
Subject: Re: oVirt noVNC
Yes Anton,
I think it's in the documentation it's
Steps 2 & 3
•
• The Engine has been configured to use /etc/pki/ovirt-engine/apache-ca.pem, which is symbolically linked to /etc/pki/ovirt-engine/ca.pem. Remove the symbolic link.
# rm /etc/pki/ovirt-engine/apache-ca.pem
• Save your CA certificate as /etc/pki/ovirt-engine/apache-ca.pem.
# cp /tmp/3rd-party-ca-cert.pem /etc/pki/ovirt-engine/apache-ca.pem
Regards,
Paul S.
________________________________
From: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Sent: 12 June 2020 11:06
To: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>; users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: RE: oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Paul,
Double checked the permissions as well. All seems to be fine. The only thing that does look different between the environments are the below:
ENV1 (Not working)
[cid:image001.png@01D640B7.2B69DFC0]
ENV2 (Working)
[cid:image007.png@01D640B7.2B69DFC0]
It seems that on the working environment, there is a shortcut file (apached-ca.pem) which points to the ca.pem file, but on the environment that is not working, the apache-ca.pem file is not a shortcut. Could this perhaps be an issue?
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>
Sent: 12 June 2020 10:44
To: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>; users(a)ovirt.org<mailto:users@ovirt.org>
Subject: Re: oVirt noVNC
No worries,
If all is pointing to the correct files I would check permissions.
Regards,
Paul S.
________________________________
From: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Sent: 12 June 2020 09:34
To: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>; users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: RE: oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Paul,
Thanks for the reply. Apologies, I should have added that I have installed our own certificates. The main problem I am facing is that the noVNC console just refuses to open, I get the attached error with any VM I try and access. I should have perhaps started with this issue in my first mail, apologies 😊
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>
Sent: 12 June 2020 10:29
To: users(a)ovirt.org<mailto:users@ovirt.org>; Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Subject: Re: oVirt noVNC
Hello Anton,
if your organisation has it's own CA you can install your own certificates or get certificates from a trusted CA.
https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ovirt…>
Paul S.
________________________________
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Sent: 12 June 2020 08:56
To: users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Everybody,
With regards to noVNC, is it a requirement to install the CA into your local browser? I would like users to access their VM console, but with no additional work from their side, ie. Downloading the CA and importing it.
Thank you
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
[#VoxBrand]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.vox.c…>
Disclaimer
The contents of this email are confidential to the sender and the intended recipient. Unless the contents are clearly and entirely of a personal nature, they are subject to copyright in favour of the holding company of the Vox group of companies. Any recipient who receives this email in error should immediately report the error to the sender and permanently delete this email from all storage devices.
This email has been scanned for viruses and malware, and may have been automatically archived by Mimecast Ltd, an innovator in Software as a Service (SaaS) for business. Providing a safer and more useful place for your human generated data. Specializing in; Security, archiving and compliance. To find out more Click Here<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.voxte…>.
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/<http://leedsbeckett.ac.uk/disclaimer/email/>
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/<http://leedsbeckett.ac.uk/disclaimer/email/>
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/<http://leedsbeckett.ac.uk/disclaimer/email/>
Yes, in the end, it was a permission on the one CA file, that was set to 700 and should have been 750 (if I remember correctly).
From: Anton Louw <Anton.Louw(a)voxtelecom.co.za>
Date: Friday, 12 June 2020 at 12:01
To: Kim Kargaard <Kim.Kargaard(a)noroff.no>, "Staniforth, Paul" <P.Staniforth(a)leedsbeckett.ac.uk>, "users(a)ovirt.org" <users(a)ovirt.org>
Subject: RE: [ovirt-users] Re: oVirt noVNC
Hi Kim,
Hopefully 😊 I will still run through a couple of checks, I am sure it is something small I am missing. Was your issue due to owner and permissions?
Yes, for some of our offerings we do use oVirt.
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<http://www.vox.co.za>
[F]<https://www.facebook.com/voxtelecomZA>
[T]<https://www.twitter.com/voxtelecom>
[I]<https://www.instagram.com/voxtelecomza/>
[L]<https://www.linkedin.com/company/voxtelecom>
[Y]<https://www.youtube.com/user/VoxTelecom>
From: Kim Kargaard <Kim.Kargaard(a)noroff.no>
Sent: 12 June 2020 11:43
To: Anton Louw <Anton.Louw(a)voxtelecom.co.za>; Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk>; users(a)ovirt.org
Subject: Re: [ovirt-users] Re: oVirt noVNC
Hi Anton,
Don´t worry, it had me tearing out hair for a while. But, Paul managed to save my remaining hair, so hopefully he has a suggestion that will sort things out for you too 😊
By the way, is Vox using ovirt as their cloud system for customers? Just curious of course.
Kind regards
Kim
From: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Date: Friday, 12 June 2020 at 11:36
To: Kim Kargaard <Kim.Kargaard(a)noroff.no<mailto:Kim.Kargaard@noroff.no>>, "Staniforth, Paul" <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>, "users(a)ovirt.org<mailto:users@ovirt.org>" <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: RE: [ovirt-users] Re: oVirt noVNC
Hi Kim,
Thanks for the reply. I double checked the permissions on the cert files now, and they are exactly the same as my other environment. But, the other environment does not have a CA, these are the default certs from ovirt. The other environment is working as expected though.
I have checked the websocket service and config, and it seems to be correct. The port is also open on the firewall. I can telnet to my FQDN on port 6100.
This is breaking my spirit 😊
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<http://www.vox.co.za>
[F]<https://www.facebook.com/voxtelecomZA>
[T]<https://www.twitter.com/voxtelecom>
[I]<https://www.instagram.com/voxtelecomza/>
[L]<https://www.linkedin.com/company/voxtelecom>
[Y]<https://www.youtube.com/user/VoxTelecom>
From: Kim Kargaard <Kim.Kargaard(a)noroff.no<mailto:Kim.Kargaard@noroff.no>>
Sent: 12 June 2020 10:51
To: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>; Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>; users(a)ovirt.org<mailto:users@ovirt.org>
Subject: Re: [ovirt-users] Re: oVirt noVNC
Have you checked that websocket proxy is configured and running? Is the port open on the firewall? And finally, have you checked the ownerships and permissions of the cert files on the engine server? The permissions was where we came unstuck for a while 😊 The individual users should not need to download the CA, the novnc browser option should just open the VM, if the settings are right.
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Reply to: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Date: Friday, 12 June 2020 at 10:48
To: "Staniforth, Paul" <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>, "users(a)ovirt.org<mailto:users@ovirt.org>" <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] Re: oVirt noVNC
Hi Paul,
Thanks for the reply. Apologies, I should have added that I have installed our own certificates. The main problem I am facing is that the noVNC console just refuses to open, I get the attached error with any VM I try and access. I should have perhaps started with this issue in my first mail, apologies 😊
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<http://www.vox.co.za>
[F]<https://www.facebook.com/voxtelecomZA>
[T]<https://www.twitter.com/voxtelecom>
[I]<https://www.instagram.com/voxtelecomza/>
[L]<https://www.linkedin.com/company/voxtelecom>
[Y]<https://www.youtube.com/user/VoxTelecom>
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>
Sent: 12 June 2020 10:29
To: users(a)ovirt.org<mailto:users@ovirt.org>; Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Subject: Re: oVirt noVNC
Hello Anton,
if your organisation has it's own CA you can install your own certificates or get certificates from a trusted CA.
https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html
Paul S.
________________________________
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Sent: 12 June 2020 08:56
To: users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Everybody,
With regards to noVNC, is it a requirement to install the CA into your local browser? I would like users to access their VM console, but with no additional work from their side, ie. Downloading the CA and importing it.
Thank you
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[Image removed by sender. F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[Image removed by sender. T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[Image removed by sender. I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[Image removed by sender. L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Image removed by sender. Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
[Image removed by sender. #VoxBrand]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.vox.c…>
Disclaimer
The contents of this email are confidential to the sender and the intended recipient. Unless the contents are clearly and entirely of a personal nature, they are subject to copyright in favour of the holding company of the Vox group of companies. Any recipient who receives this email in error should immediately report the error to the sender and permanently delete this email from all storage devices.
This email has been scanned for viruses and malware, and may have been automatically archived by Mimecast Ltd, an innovator in Software as a Service (SaaS) for business. Providing a safer and more useful place for your human generated data. Specializing in; Security, archiving and compliance. To find out more Click Here<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.voxte…>.
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/
Hi Paul,
Double checked the permissions as well. All seems to be fine. The only thing that does look different between the environments are the below:
ENV1 (Not working)
[cid:image001.png@01D640B1.B1BEAA20]
ENV2 (Working)
[cid:image007.png@01D640B1.E97498D0]
It seems that on the working environment, there is a shortcut file (apached-ca.pem) which points to the ca.pem file, but on the environment that is not working, the apache-ca.pem file is not a shortcut. Could this perhaps be an issue?
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization
______________________________________
D: 087 805 1572 | M: N/A
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
anton.louw(a)voxtelecom.co.za
www.vox.co.za
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk>
Sent: 12 June 2020 10:44
To: Anton Louw <Anton.Louw(a)voxtelecom.co.za>; users(a)ovirt.org
Subject: Re: oVirt noVNC
No worries,
If all is pointing to the correct files I would check permissions.
Regards,
Paul S.
________________________________
From: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Sent: 12 June 2020 09:34
To: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>; users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: RE: oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Paul,
Thanks for the reply. Apologies, I should have added that I have installed our own certificates. The main problem I am facing is that the noVNC console just refuses to open, I get the attached error with any VM I try and access. I should have perhaps started with this issue in my first mail, apologies 😊
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>
Sent: 12 June 2020 10:29
To: users(a)ovirt.org<mailto:users@ovirt.org>; Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Subject: Re: oVirt noVNC
Hello Anton,
if your organisation has it's own CA you can install your own certificates or get certificates from a trusted CA.
https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ovirt…>
Paul S.
________________________________
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Sent: 12 June 2020 08:56
To: users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Everybody,
With regards to noVNC, is it a requirement to install the CA into your local browser? I would like users to access their VM console, but with no additional work from their side, ie. Downloading the CA and importing it.
Thank you
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
[#VoxBrand]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.vox.c…>
Disclaimer
The contents of this email are confidential to the sender and the intended recipient. Unless the contents are clearly and entirely of a personal nature, they are subject to copyright in favour of the holding company of the Vox group of companies. Any recipient who receives this email in error should immediately report the error to the sender and permanently delete this email from all storage devices.
This email has been scanned for viruses and malware, and may have been automatically archived by Mimecast Ltd, an innovator in Software as a Service (SaaS) for business. Providing a safer and more useful place for your human generated data. Specializing in; Security, archiving and compliance. To find out more Click Here<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.voxte…>.
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/<http://leedsbeckett.ac.uk/disclaimer/email/>
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/<http://leedsbeckett.ac.uk/disclaimer/email/>
Hi Anton,
Don´t worry, it had me tearing out hair for a while. But, Paul managed to save my remaining hair, so hopefully he has a suggestion that will sort things out for you too 😊
By the way, is Vox using ovirt as their cloud system for customers? Just curious of course.
Kind regards
Kim
From: Anton Louw <Anton.Louw(a)voxtelecom.co.za>
Date: Friday, 12 June 2020 at 11:36
To: Kim Kargaard <Kim.Kargaard(a)noroff.no>, "Staniforth, Paul" <P.Staniforth(a)leedsbeckett.ac.uk>, "users(a)ovirt.org" <users(a)ovirt.org>
Subject: RE: [ovirt-users] Re: oVirt noVNC
Hi Kim,
Thanks for the reply. I double checked the permissions on the cert files now, and they are exactly the same as my other environment. But, the other environment does not have a CA, these are the default certs from ovirt. The other environment is working as expected though.
I have checked the websocket service and config, and it seems to be correct. The port is also open on the firewall. I can telnet to my FQDN on port 6100.
This is breaking my spirit 😊
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<http://www.vox.co.za>
[F]<https://www.facebook.com/voxtelecomZA>
[T]<https://www.twitter.com/voxtelecom>
[I]<https://www.instagram.com/voxtelecomza/>
[L]<https://www.linkedin.com/company/voxtelecom>
[Y]<https://www.youtube.com/user/VoxTelecom>
From: Kim Kargaard <Kim.Kargaard(a)noroff.no>
Sent: 12 June 2020 10:51
To: Anton Louw <Anton.Louw(a)voxtelecom.co.za>; Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk>; users(a)ovirt.org
Subject: Re: [ovirt-users] Re: oVirt noVNC
Have you checked that websocket proxy is configured and running? Is the port open on the firewall? And finally, have you checked the ownerships and permissions of the cert files on the engine server? The permissions was where we came unstuck for a while 😊 The individual users should not need to download the CA, the novnc browser option should just open the VM, if the settings are right.
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Reply to: Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Date: Friday, 12 June 2020 at 10:48
To: "Staniforth, Paul" <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>, "users(a)ovirt.org<mailto:users@ovirt.org>" <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] Re: oVirt noVNC
Hi Paul,
Thanks for the reply. Apologies, I should have added that I have installed our own certificates. The main problem I am facing is that the noVNC console just refuses to open, I get the attached error with any VM I try and access. I should have perhaps started with this issue in my first mail, apologies 😊
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<http://www.vox.co.za>
[F]<https://www.facebook.com/voxtelecomZA>
[T]<https://www.twitter.com/voxtelecom>
[I]<https://www.instagram.com/voxtelecomza/>
[L]<https://www.linkedin.com/company/voxtelecom>
[Y]<https://www.youtube.com/user/VoxTelecom>
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk<mailto:P.Staniforth@leedsbeckett.ac.uk>>
Sent: 12 June 2020 10:29
To: users(a)ovirt.org<mailto:users@ovirt.org>; Anton Louw <Anton.Louw(a)voxtelecom.co.za<mailto:Anton.Louw@voxtelecom.co.za>>
Subject: Re: oVirt noVNC
Hello Anton,
if your organisation has it's own CA you can install your own certificates or get certificates from a trusted CA.
https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html
Paul S.
________________________________
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Sent: 12 June 2020 08:56
To: users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Everybody,
With regards to noVNC, is it a requirement to install the CA into your local browser? I would like users to access their VM console, but with no additional work from their side, ie. Downloading the CA and importing it.
Thank you
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[Image removed by sender. F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[Image removed by sender. T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[Image removed by sender. I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[Image removed by sender. L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Image removed by sender. Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
[Image removed by sender. #VoxBrand]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.vox.c…>
Disclaimer
The contents of this email are confidential to the sender and the intended recipient. Unless the contents are clearly and entirely of a personal nature, they are subject to copyright in favour of the holding company of the Vox group of companies. Any recipient who receives this email in error should immediately report the error to the sender and permanently delete this email from all storage devices.
This email has been scanned for viruses and malware, and may have been automatically archived by Mimecast Ltd, an innovator in Software as a Service (SaaS) for business. Providing a safer and more useful place for your human generated data. Specializing in; Security, archiving and compliance. To find out more Click Here<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.voxte…>.
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/
Have you checked that websocket proxy is configured and running? Is the port open on the firewall? And finally, have you checked the ownerships and permissions of the cert files on the engine server? The permissions was where we came unstuck for a while 😊 The individual users should not need to download the CA, the novnc browser option should just open the VM, if the settings are right.
From: Anton Louw via Users <users(a)ovirt.org>
Reply to: Anton Louw <Anton.Louw(a)voxtelecom.co.za>
Date: Friday, 12 June 2020 at 10:48
To: "Staniforth, Paul" <P.Staniforth(a)leedsbeckett.ac.uk>, "users(a)ovirt.org" <users(a)ovirt.org>
Subject: [ovirt-users] Re: oVirt noVNC
Hi Paul,
Thanks for the reply. Apologies, I should have added that I have installed our own certificates. The main problem I am facing is that the noVNC console just refuses to open, I get the attached error with any VM I try and access. I should have perhaps started with this issue in my first mail, apologies 😊
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<http://www.vox.co.za>
[F]<https://www.facebook.com/voxtelecomZA>
[T]<https://www.twitter.com/voxtelecom>
[I]<https://www.instagram.com/voxtelecomza/>
[L]<https://www.linkedin.com/company/voxtelecom>
[Y]<https://www.youtube.com/user/VoxTelecom>
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk>
Sent: 12 June 2020 10:29
To: users(a)ovirt.org; Anton Louw <Anton.Louw(a)voxtelecom.co.za>
Subject: Re: oVirt noVNC
Hello Anton,
if your organisation has it's own CA you can install your own certificates or get certificates from a trusted CA.
https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html
Paul S.
________________________________
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Sent: 12 June 2020 08:56
To: users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Everybody,
With regards to noVNC, is it a requirement to install the CA into your local browser? I would like users to access their VM console, but with no additional work from their side, ie. Downloading the CA and importing it.
Thank you
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[Image removed by sender. F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[Image removed by sender. T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[Image removed by sender. I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[Image removed by sender. L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Image removed by sender. Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
[Image removed by sender. #VoxBrand]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.vox.c…>
Disclaimer
The contents of this email are confidential to the sender and the intended recipient. Unless the contents are clearly and entirely of a personal nature, they are subject to copyright in favour of the holding company of the Vox group of companies. Any recipient who receives this email in error should immediately report the error to the sender and permanently delete this email from all storage devices.
This email has been scanned for viruses and malware, and may have been automatically archived by Mimecast Ltd, an innovator in Software as a Service (SaaS) for business. Providing a safer and more useful place for your human generated data. Specializing in; Security, archiving and compliance. To find out more Click Here<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.voxte…>.
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/
Hi Paul,
Thanks for the reply. Apologies, I should have added that I have installed our own certificates. The main problem I am facing is that the noVNC console just refuses to open, I get the attached error with any VM I try and access. I should have perhaps started with this issue in my first mail, apologies 😊
Thanks
Anton Louw
Cloud Engineer: Storage and Virtualization
______________________________________
D: 087 805 1572 | M: N/A
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
anton.louw(a)voxtelecom.co.za
www.vox.co.za
From: Staniforth, Paul <P.Staniforth(a)leedsbeckett.ac.uk>
Sent: 12 June 2020 10:29
To: users(a)ovirt.org; Anton Louw <Anton.Louw(a)voxtelecom.co.za>
Subject: Re: oVirt noVNC
Hello Anton,
if your organisation has it's own CA you can install your own certificates or get certificates from a trusted CA.
https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html<https://www.ovirt.org/documentation/admin-guide/appe-oVirt_and_SSL.html>
Paul S.
________________________________
From: Anton Louw via Users <users(a)ovirt.org<mailto:users@ovirt.org>>
Sent: 12 June 2020 08:56
To: users(a)ovirt.org<mailto:users@ovirt.org> <users(a)ovirt.org<mailto:users@ovirt.org>>
Subject: [ovirt-users] oVirt noVNC
Caution External Mail: Do not click any links or open any attachments unless you trust the sender and know that the content is safe.
Hi Everybody,
With regards to noVNC, is it a requirement to install the CA into your local browser? I would like users to access their VM console, but with no additional work from their side, ie. Downloading the CA and importing it.
Thank you
Anton Louw
Cloud Engineer: Storage and Virtualization at Vox
________________________________
T: 087 805 0000 | D: 087 805 1572
M: N/A
E: anton.louw(a)voxtelecom.co.za<mailto:anton.louw@voxtelecom.co.za>
A: Rutherford Estate, 1 Scott Street, Waverley, Johannesburg
www.vox.co.za<https://eur02.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.vox.co…>
[F]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.faceb…>
[T]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.twitt…>
[I]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.insta…>
[L]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.linke…>
[Y]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.youtu…>
[#VoxBrand]<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.vox.c…>
Disclaimer
The contents of this email are confidential to the sender and the intended recipient. Unless the contents are clearly and entirely of a personal nature, they are subject to copyright in favour of the holding company of the Vox group of companies. Any recipient who receives this email in error should immediately report the error to the sender and permanently delete this email from all storage devices.
This email has been scanned for viruses and malware, and may have been automatically archived by Mimecast Ltd, an innovator in Software as a Service (SaaS) for business. Providing a safer and more useful place for your human generated data. Specializing in; Security, archiving and compliance. To find out more Click Here<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.voxte…>.
To view the terms under which this email is distributed, please go to:-
http://leedsbeckett.ac.uk/disclaimer/email/<http://leedsbeckett.ac.uk/disclaimer/email/>