Linking vRealize Orchestrator (vRO) to vCloud Director (vCD) for Service Management


Yves Sandfort

Yves Sandfort

One of the new features in vCloud Director since version 9.1 is the ability to execute vRealize Orchestrator workflows direct from within the vCloud Director User Interface for both tenant and service provider usage. With the constant addition of other extensibility features this becomes a very attractive solutions for service providers to expand from standard vCloud Director based IaaS to some more advanced service offerings.

But how do you get started?


  • vCloud Director 9.1 or above (the below description has been tested on vCD 9.7)
  • vRealize Orchestrator compatible to your vCloud Director version (VMware InterOp Matrix)
  • Important: Both systems need to be attached to the same vSphere SSO domain and have that setup as a lookupservice
  • If you plan to change certificates on vCloud Director or vRealize Orchestrator it makes sense to do this before we link the systems as we have a cert exchange happen during registration

Procedure on vRealize Orchestrator appliance:

  1. Login to the console of your vRO appliance as root
  2. Run the following command to grab the keystore password:

  3. cat /var/lib/vco/keystore.password
  1. Copy the key into a notepad or your clipboard for later usage. Important: Do not copy the machine name (i.e. vro01 above).
  2. Export the certificate of the dunes (vRO) server into pem format (Replace the StorePass):
  3. keytool -exportcert -alias dunes -storepass TheKeystorePasswordFromStep3Abobe -keystore /etc/vco/app-server/security/jssecacerts -rfc -file vro.pem

  1. You can ignore the warning message at the bottom of the message above as it is not affecting the PEM file.
  2. Copy the vro.pem file to the local machine which will be used to link vCloud Director to vRealize Orchestrator.

Procedure in vCloud Director

  1. Login to the vCloud Director provider user interface (i.e.
  2. Select Content Libraries from the "Burger Menu"
  1. Select Service Management in the Left Menu unter Library Administration.
  2. Within the vRO Servers tab click Add.
  3. Enter a Name, Hostname, Username and Password.
  4. On the Trust Anchor click the Upload icon and select the PEM file we exported before.
  5. Click OK.

That's all, now you can start to create Service Categories, a Library etc.

If you want to setup the other way around, so vRealize Orchestrator to vCloud Director you might want to look at this article from Matthias Eisner:





Thank you! Your message has been sent!
Oops! Something went wrong while submitting the form.