Before you can upgrade or reinstall a View 5.1 security server instance, you must remove the current IPsec rules that govern communication between the security server and its paired View Connection Server instance. If you do not take this step, the upgrade or reinstallation fails.

Important

This task pertains to View 5.1 and later security servers. If does not apply to View 5.0.x and earlier security servers.

By default, communication between a security server and its paired View Connection Server instance is governed by IPsec rules. When you upgrade or reinstall the security server and pair it again with the View Connection Server instance, a new set of IPsec rules must be established. If the existing IPsec rules are not removed before you upgrade or reinstall, the pairing fails.

You must take this step when you upgrade or reinstall a security server and are using IPsec to protect communication between the security server and View Connection Server.

You can configure an initial security server pairing without using IPsec rules. Before you install the security server, you can open View Administrator and deselect the Global Setting, Use IPSec for Security Server Connections, which is enabled by default. If IPsec rules are not in effect, you do not have to remove them before you upgrade or reinstall.

Note

You do not have to remove a security server from View before you upgrade or reinstall the security server. Take this step only if you intend to remove security server permanently from the View environment.

Before View 5.1, you could remove security server in View Administrator or with the vdmadmin -S command. In View 5.1 and later releases, you can only use vdmadmin -S. See "Removing the Entry for a View Connection Server Instance or Security Server Using the -S Option" in the VMware View Administration document.

Caution

If you remove the IPsec rules for an active security server, all communication with the security server is lost until you upgrade or reinstall the security server.

1

In View Administrator, click View Configuration > Servers.

2

In the Security Servers tab, click More Commands > Prepare for Upgrade or Reinstallation.

If you disabled IPsec rules before you installed the security server, this setting is inactive. In this case, you do not have to remove IPsec rules before you reinstall or upgrade.

3

Click OK.

The IPsec rules are removed and the Prepare for Upgrade or Reinstallation setting becomes inactive, indicating that you can reinstall or upgrade the security server.

Upgrade or reinstall security server.