vCenter5 default change certificate

Hello, we moved to vCenter Server Version 5 lately. The problem is, that when the VMware vSphere Profile-Driven Storage Service is started, he left shortly after. The event log shows: the service "VMware vSphere based storage Service profile" came out with the error: invalid function

I found a KB article addressing this issue (http://kb.vmware.com/selfservice/microsites/search.do?cmd=displayKC & docType = kc & externalId = 2007824) with the exact error messages and the resolution in this article works fine. But I have to use a certificate issued by our CA rather than a self signed certificate.

I already tried to create a new certificate, but the error persists.

SPS.log:

2012-01-03 10:55:06, 397 com.vmware.sps.util.impl.VpxdConnection [WrapperSimpleAppMain] ERROR - Unable to connect to vpxd
com.vmware.vim.binding.vim.fault.NoClientCertificate:

inherited from com.vmware.vim.binding.vim.fault.VimFault:

inherited from com.vmware.vim.binding.vim.fault.NoClientCertificate: Client was clear, ohne ein Zertifikat bereitzustellen.
at sun.reflect.NativeConstructorAccessorImpl.newInstance0 (Native Method)
at sun.reflect.NativeConstructorAccessorImpl.newInstance(NativeConstructorAccessorImpl.java:39)
at sun.reflect.DelegatingConstructorAccessorImpl.newInstance(DelegatingConstructorAccessorImpl.java:27)
at java.lang.reflect.Constructor.newInstance(Constructor.java:513)
at java.lang.Class.newInstance0(Class.java:355)
at java.lang.Class.newInstance(Class.java:308)
at com.vmware.vim.vmomi.core.types.impl.ComplexTypeImpl.newInstance(ComplexTypeImpl.java:143)
at com.vmware.vim.vmomi.core.types.impl.DefaultDataObjectFactory.newDataObject(DefaultDataObjectFactory.java:26)
to com.vmware.vim.vmomi.core.soap.impl.unmarshaller.ComplexStackContext. < init > (ComplexStackContext.java:33)
to com.vmware.vim.vmomi.core.soap.impl.unmarshaller.UnmarshallerImpl$ UnmarshallSoapFaultContext.parse (UnmarshallerImpl.java:135)
to com.vmware.vim.vmomi.core.soap.impl.unmarshaller.UnmarshallerImpl$ UnmarshallSoapFaultContext.unmarshall (UnmarshallerImpl.java:98)
at com.vmware.vim.vmomi.core.soap.impl.unmarshaller.UnmarshallerImpl.unmarshalSoapFault(UnmarshallerImpl.java:84)
at com.vmware.vim.vmomi.client.common.impl.SoapFaultStackContext.setValue(SoapFaultStackContext.java:37)
at com.vmware.vim.vmomi.client.common.impl.ResponseUnmarshaller.unmarshal(ResponseUnmarshaller.java:97)
at com.vmware.vim.vmomi.client.common.impl.ResponseImpl.unmarshalResponse(ResponseImpl.java:243)
at com.vmware.vim.vmomi.client.common.impl.ResponseImpl.setResponse(ResponseImpl.java:202)
at com.vmware.vim.vmomi.client.http.impl.HttpExchange.run(HttpExchange.java:105)
to java.util.concurrent.ThreadPoolExecutor$ Worker.runTask (ThreadPoolExecutor.java:886)
to java.util.concurrent.ThreadPoolExecutor$ Worker.run (ThreadPoolExecutor.java:908)
at java.lang.Thread.run(Thread.java:662)
2012-01-03 10:55:06, 397 [WrapperSimpleAppMain] ERROR com.vmware.sps.StorageMain - politics of Storage Service could not be initialized: com.vmware.sps.fault.VpxdConnectionException: connection to vpxd failed

Someone has an idea?

EDIT: I also did a new install of vCenter 5 with exactly the same problem. This isn't a problem with the update.

Has anyone of you successfully changed the certificate on vCenter 5?

I could be misunderstanding the problem, but I found these instructions to replace the certificate:

http://www.vstable.com/2011/12/14/replacing-vCenter-SSL-certificate-with-certificate-issued-by-Microsoft-certificate-authority/

It seems to be an extra step for the v5, which wasn't necessary with the v4.

Tags: VMware

Similar Questions

  • Search engine default change to Google won't go away.

    Search engine default change to Google won't go away even after changing all default values Google search. It's bugging me.

    If get you rid of the blue bar, Google sets a cookie to remind itself does not show it again. If you block or erase cookies from Google, the site continues to display the bar.

    You can use a custom style rule to hide. Some people use Adblock Plus or an addition of related. Here's an old NET with suggestions: How can I remove the 'Get to Google faster. Switch bar you have by default search enging to Google"at the top of Firefox?

    Additional screenshot of the reference bar

  • Search bar default changes setting address bar search

    In the past, I usually kept my search bar on IMDb, since I use that a lot, but I do Google search even more often, so I just type Google search terms into the address bar and hit < Enter >, which has always worked well. It was like having two bars at once, research which was totally awesome. However, having just "updated" Firefox about an hour ago, it now appears that selection of search from the address bar is now linked to the selection of the search bar. When I do a search with the address bar, search that results will invariably to whatever the choice lies in the search bar. I tried to go to topic: config and "reset" the setting of the browser.default.enginename, but he instantly changes to change the setting of the search bar. Please separate the address bar and the search bar back to the way they were before. It is extremely annoying.

    Additional information:

    I just drove my computer where I'm headed back with Firefox 22.0 and immediately corrected behavior itself, which only confirms that there is a problem with the update to the worm 23.0, so I guess I'm stuck 22.0 for now. I also see in the 'What's New' notes for worm 23.0 that ' users can now switch to a new provider of research through the browser everything. " It would be nice if the change apply to 'the whole browser' was optional.

    Hello, consolidating the search options in the bar search, address bar and the homepage by default has been change deliberated by the developers. You can use the keyword search by mike kaply extension work around this if...

  • Home Gallery default change folder

    When I opened the Gallery, the default folder is the film. I want to change it to albums.

    I have not found all the settings for that.

    Any help will be appreciated.

    Disable or leave the gallery by default as it is. And install Quickpic from the game store. It is a very light and fully functional Gallery with possibility to exclude and hide folders too app.

  • Settings by default - change multiple Expressions of both vacuum

    I have a pretty great architecture already drafted.  I recently had to add a parameter to a function (sous-suite), which is widely used throughout my architecture TestStand.  I simply added a Boolean control I can use inside the sous-suite.  Now that I've added the parameter, I reloaded all the subsequences and the Boolean field for the parameter has an error message "the expression cannot be empty."  I'd like to be able to define a default value false or simply find all instances of "the expression may not be empty" and them set to false. So far, I couldn't get this to work, I can't do a find/replace on the error, because it is not picking it up.  Is there a way to properly define the default or change several errors at the same time?  It will always take me manually type in 'false' for all calls from this subsequence. There are only a few cases where I need it's true.

    You can search like Doug suggested and filter your results by using something like the following. You will get additional results, but it might make you save time.

  • by default changed to high contrast settings

    I have the high contrast settings and can turn them on by using ALT + SHIFT LEFT + print SCREEN.  With some of my students, somehow the computer chose the default high contrast setting.  I don't know how it happened, and he can't go back to the default setting.

    Hello

    1. what happens when you try to change the default settings? If you receive an error message and then, after return the exact error message.
    2. How are you trying to change?

    If you have not tried turn off high contrast so try:
    a. click Start, click Control Paneland then click Accessibility Options.
    b. click on the view tab, clear the use high contrast check box.
    c. click OK.

    For more information, see the following articles:
    http://www.Microsoft.com/resources/documentation/Windows/XP/all/proddocs/en-us/access_highcontrast_turnon.mspx?mfr=true
    http://www.Microsoft.com/resources/documentation/Windows/XP/all/proddocs/en-us/access_highcontrast_settings.mspx?mfr=true

  • Gmail contacts for Smartphones blackBerry Sync Services in default change list

    Recently, I added my gmail address to the device.  In Options / Advanced options / services by default, it lists my Gmail account to contact list (Sync).  I want to move to my POP account because this is where I maintain my contacts list.  How can I get my POP account in this list?

    Thank you

    Hello

    It of okay, that it's like a label and can not be changed.

    Thank you

  • BlackBerry Smartphones by default change E-mail address

    After the update to the new device software v4.5, my default email has changed.  Compose a new message on my BB automatically selects my BB email address, instead of the [email protected] which is the default address.  I looked on BIS from one place to the default address of the value and have also checked everywhere I can think on the device, but it is impossible to find a place to identify the default address.  I'm sure someone will know exactly where this (please)?

    Using of BB 8800, Software v4.5 device...

    Go to menu, options, advanced, default services, under change of e-mail address mail to your preferred e-mail address.

  • Acrobat DC comment text box default change

    Hello, since the last update for DC Acrobat Pro, we found the properties for the text inside our commentary on the text boxes is no longer to save. You must continually change again and again. Even after following the proper protocol. The method of changing the properties of the default text for the text boxes commenting has changed? Or, is it a bug that will hopefully fixed in the next few days?

    Please note that this issue seems to be with all those of my colleagues, as well, who have updated the software to the latest version.

    Thanks to you all.

    Hi JNoerper,

    Could you please if you are referring to the text box in the comment section?

    Here is the screenshot:

    If you are referring to the text box above, I want to mention that a bug was noted for it and our team is working on it to fix it.

    Thank you for patience.

  • Discoverer default change

    Hi friends,
    When connection to discoverer plus or the Viewer. The first screen, let's see
    'Connect to' and the default value for this is "OracleBI Discoverer"
    I wonder if I can hide this option.
    If at any time when I open the discoverer, more it I shouldn't see it. Also if someone can help me adding a LOV to "Database" box on the same page.

    Thanks in advance.
    Kind regards
    Prashant

    Hello

    When connection to discoverer plus or the Viewer. The first screen, let's see
    'Connect to' and the default value for this is "OracleBI Discoverer"
    I wonder if I can hide this option.

    You can set the default value for passing a parameter of the URL.
    for example for users of oracle applications, you must add
    & connectionAccessType = APPS

    http:///discoverer/Viewer? & connectionAccessType = APPS

    This change is not supported, but you can search this forum for manipulations UIX you can do.
    You can also consult other UIX changes performed here:
    http://OracleBI.blogspot.com/search?q=UIX
    It can give you a direction.

    Once again, it is not supported, be very careful with any changes.

    Tamir

  • MSE 8510: default SSL certificate expired

    Hello community,

    the SSL certificate self-signed of our MSE8510 that has been Setup automatically during installation has expired. Is there a way to create a new directly on the box or do I need to do external and transfer?

    Someone has a short guide on how to do it?

    Thank you

    Renz

    Check:

    http://www.Cisco.com/en/us/docs/Telepresence/infrastructure/articles/mcu_certify_https_connections_157.shtml

    Its always a good idea to browse the first cisco documentation site! :-)

    You will find also some information when you use google, such as:

    http://blog.codesalot.com/2010/11/25/creating-certificates-fo-Codian-MCU/

    Please remember useful frequency responses (using the stars below) and mark answers useful or correct .

  • Undo a Firefox 'reset to defaults' - change the order of toolbars

    I used to have my toolbars in the order (from top to bottom): menu, navigation, tabs. Now, after having been reset Firefox, my toolbars are in a different order: menu, tabls, navigation. I want them back in the original order. I use Firefox 16.0.2.

    Note: the add-on, DragMyToolbars, has not been updated to work on my version of Firefox. I have the "old data Firefox" file from reset.

    Hello, at the moment you can always manually define "tabs at the bottom" - enter Subject: config in the address bar of firefox (confirmed the message information where it appears), search for the preference named browser.tabs.onTop & activate false by double-clicking it.

    However this setting could lose its effect in a future version of the browser, for more information, see also www.ghacks.net/2012/07/26/mozilla-tabs-on-bottom-feature-needs-to-go/

  • JAVA code base - default changes 8

    I just upgraded our MX 6.1 to ColdFusion 8 test environment. Environment = Windows 2003 R2 SP2, IIS 6.0, MS Access DB (I know, I'm working on porting to MS SQL).

    My site uses SSL, and it seems that everytime I open a page that uses a JavaScript script, I get the ' this page is secure and unsecured... "Pop-up Windows. I have checked all links in the code and find anything in my CF code that would create this message. All named is in the covered SSL directories.

    I compared the production MX 6.1 code source code of version 8 and have resulted in the following:
    version MX 6.1
    < OBJECT
    CLASSID = "clsid:8AD9C840 - 044F-11 D 1-B3E9-00805F499D93"
    CodeBase="/CFIDE/classes/CF-J2RE-Win.cab '...

    version 8
    < object
    ClassID = "clsid:8AD9C840 - 044F-11 D 1-B3E9-00805F499D93"
    codebase =" http://java.sun.com/products/plugin/1.3/jinstall-13-win32.cab#Version=1, 3,0,0" ...

    Version 8 has the base code hardcoded on the sun site (not an SSL site). Is throwing my mistake. I modified the don't - runtime.xml in the \Coldfusion8\lib file, recycled services and voila, no more error.

    My question is, is it the right thing to do?

    Libby H wrote:
    >
    > My site uses SSL, and it seems that every time I open a page that uses a
    > JavaScript, I get the ' this page is secure and unsecured... "Windows".
    > pop up.

    > A version 8 database code hardcoded on the sun site (not an SSL site).
    > Is throwing my mistake. I modified the don't - runtime.xml in the
    > \Coldfusion8\lib file, recycled services and voila, no more error.
    >
    > My question is, is it the right thing to do?

    If it works, it must be good :)

    Don't forget to submit this question to Adobe, so they can fix:
    http://www.Adobe.com/go/wish/

    Jochem

    --
    Jochem van Dieten
    Adobe Community Expert for ColdFusion

  • What happens IF we replace the default certificates for vCenter 5.1?

    Does anyone have specific vmware documents indicating what happens IF we replace the default certificates for vCenter 5.1 SSO, inventory, Web Client etc... services?

    I found this below at page 19 of https://www.vmware.com/files/pdf/products/vCenter/VMware-vCenter-Server-Single-Sign-On.pdf

    Certificates update

    When you install the vCenter Single Sign-On, each component that registers with it - including

    vCenter Single Sign-On himself - uses SSL to communicate between components and saved solutions.

    By default, SSL certificates are generated automatically by VMware installation and upgrade process

    and are sufficient for the operational security for most VMware customers.

    Some clients prefer to use their own self-signed or purchased SSL certificates. A tool has been developed to

    help the insertion of these certificates after vCenter Server installation. Because of the additional knowledge

    required to create and install self-signed certificates, we recommend that you review the following knowledge of VMware

    basis of articles:

    "Deployment and using the tool to automate SSL certificate.

    (VMware 2041600 knowledge base article)

    "Generation of certificates for use with the VMware Certificate SSL automation tool"

    (VMware 2044696 knowledge base article)

    In 10 years your vCenter starts (because of expiry of the certificate).

    Your users will see pesky warnings of SSL certificate when connecting components.

    Apart from that all traffic is always secure and encrypted with certificates by default, you have simply a chain of trust for them.

  • Firefox shows "the peer certificate has an invalid signature." ISMA shows "could not trust this certificate for unknown reasons.

    With the help of a PKI on site of 2 levels. Root CA offline (Standalone Windows 2008 R2, Enterprise Edition) and Isma online for delivery of certificates (Domain-Joined, issuing CA)

    ROOTCA certificate installed in the store and the approved display (PKCS #1 SHA-256 with RSA algorithm encryption and uses a signature SHA2)

    ISSUINGCA certificate installed in the store and display "couldn't trust for unknown reasons" has also SHA2 signature with the RSASSA-PSS algorithm

    Certificate issued is for a Web Server front end Lync and when it tries to load the secure web connection. I get the message "the peer certificate has an invalid signature."

    I completely uninstalled and reinstalled Firefox. Removed and added certificates ROOT and ISMA. Note: No problem when using the same certificates in Internet Explorer 8, 9 or 10 on the same system. Lync client also uses the same certificates, no problem. Only when access to the Web Services of Lync from Firefox.
    Question: Firefox NSS #11 internal Module PCKS supports RSASSA - PSS SHA-256 with different hashes? How can I solve this further?

    I finally found the problem. The ROOT CA has the following registry key configuration when cert Isma was published:

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\CertSvc\Configuration\IssuingCA\CSP\AlternateSignatureAlgorithm = 1

    This CA cause ROOT to issue the cert with a signature that is encrypted with the algorithm RSASSA-PSS (1.2.840.113549.1.1.10).

    This signature replacement algorithm no is apparently not supported for use with Firefox 27.0

    I changed the registry value on the ROOT CA to a value of 0. Renewed the cert IssuingCA (using the same private key) which is now on display with sha256RSA encryption. I have republished all my default web certificates now using this new broadcast chain CA without problem.

Maybe you are looking for