Test failed, error code was Hostname/Address resolution failure when connecting to HSM.

book

Article ID: 168785

calendar_today

Updated On:

Products

Asset Management Solution Data Center Security Monitoring Edition ProxySG Software - SGOS

Issue/Introduction

When testing connectivity to the HSM appliance (test hsm-keyring keyringid), the test fails with the following error:

% Test failed, error code was Hostname/Address resolution failure

 

Cause

A PCAP shows that the string being passed to DNS has invalid strongs after the hostname. For example, it might append a string such as "\237\004\200\212" after the FQDN. This results in the DNS cache being ignored, and if DNS imputing is enabled it will result in many DNS requests.

Resolution

This is fixed in SGOS 6.5.8.3 and 6.6.2.1 and later.