When a non VCF vCenter added to the VCF deployed VMware Aria Operations (vROPS) instance. Certificate replacement for vCenter fails at re-trust.
search cancel

When a non VCF vCenter added to the VCF deployed VMware Aria Operations (vROPS) instance. Certificate replacement for vCenter fails at re-trust.

book

Article ID: 318961

calendar_today

Updated On:

Products

VMware Cloud Foundation

Issue/Introduction

This KB article resolves the issue in Certificate Management when replaced in an environment with an external vCenter.

Symptoms:
The vCenter certificate replacement fails at the re-trust with VMware Aria Operations (vROPS) the following error.
2023-04-14T23:07:15.748+0000 ERROR [vcf_om,e752eda15f8a455b,b0c2] [c.v.v.c.vrops.VROPSSuiteAdapter,om-exec-20] Failed to fetch thumbprint from server: <vCenter FQDN>
2023-04-14T23:07:15.748+0000 ERROR [vcf_om,e752eda15f8a455b,b0c2] [c.v.v.c.vrops.VROPSSuiteAdapter,om-exec-20] Failed to fetch thumbprint from server: <vCenter FQDN>
java.lang.Exception: Failed to fetch thumbprint from server: <vCenter FQDN>
at com.vmware.vcf.certmgmt.vrops.VROPSSuiteAdapter.getThumbprint(VROPSSuiteAdapter.java:179)
        at com.vmware.vcf.certmgmt.vrops.VROPSSuiteAdapter.retrust(VROPSSuiteAdapter.java:133)
        at com.vmware.vcf.certmgmt.vrops.VROPSSuiteAdapter.retrustByResourceType(VROPSSuiteAdapter.java:60)


Environment

VMware Cloud Foundation 2.0.x
VMware Cloud Foundation 5.0
VMware Cloud Foundation 3.0.x
Vmware Cloud Foundation 4.5.1
VMware Cloud Foundation 4.0.x
VMware Cloud Foundation 4.4.x
Vmware Cloud Foundation 4.5

Cause

The VMware Aria Operations (vROPS) adapter is unable to reach the externally added vCenter for the re-trust. It causes an error in the operation.

Resolution

This issue is resolved in VMware Cloud Foundation 5.1.

Workaround:
Please follow the below step:
If the connectivity between the corresponding vCenter and the vCenter is down, manually perform the re-trust operation using the new vCenter thumbprint from the VROPS UI.
Refer to the VMware documentation link for more help: Update the vCenter Server Certificate on vRealize Operations Manager for Consolidated SDDC