vSAN cluster/debug commands fail with [SSL: CERTIFICATE_VERIFY_FAILED]
search cancel

vSAN cluster/debug commands fail with [SSL: CERTIFICATE_VERIFY_FAILED]

book

Article ID: 325178

calendar_today

Updated On:

Products

VMware vSAN

Issue/Introduction

Symptoms:
When running vSAN cluster/debug commands with either esxcli or localcli you get an error like one seen below:

[root@esxi-6:~] localcli vsan health cluster list
ERROR:root:Failed to test vsan vmodl version with error [SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed: self-signed certificate in certificate chain (_ssl.c:1131) on localhost
WARNING:root:Retry retrieving vsan vmodl version, 0

cert-verify-failed.png

Environment

VMware vSAN 7.0.x
VMware vSAN 8.0.x

Cause

Certificate in use by the host is not trusted

Resolution

Renew/Refresh host certs by following Renew or Refresh ESXi Certificates

 


Additional Information

Impact/Risks:
Commands fail to retrieve information from other hosts in the cluster