Key Management Server status reports "Not Connected" after convergence to embedded Platform Services Controller
search cancel

Key Management Server status reports "Not Connected" after convergence to embedded Platform Services Controller

book

Article ID: 322229

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

Symptoms:
After a convergence from vCenter Server with external Platform Services Controller to vCenter Server with embedded Platform Services Controller, the vCenter Server Key Management Server(s) Connection Status appears with the warning:

"Not connected (Trust not established. View Details)"

Environment

VMware vCenter Server Appliance 6.5.x
VMware vCenter Server Appliance 6.7.x

Cause

The Key Management Server(s) (KMS) trusted certificate is not retained during the convergence process.

Important: The broken trust relationship between vCenter Server and the Key Management Server(s) does not impact currently encrypted Virtual Machines.

Resolution

This issue is resolved in :
vCenter Server 6.7 Update 2, available at VMware Downloads.
vCenter Server 6.5 Update 3, available at VMware Downloads.

Workaround:
To workaround this issue, manually re-establish the trust relationship between vCenter Server and the Key Management Server(s). For more information see VMware Docs.
  1. Log in to the vSphere Web Client, and select a vCenter Server system.
  2. Click Configure and select Key Management Servers.
  3. Select the KMS instance with which you want to establish a trusted connection.
  4. Click Establish trust with KMS.
  5. Select the option appropriate for your server and complete the steps.