"The SSL certificate does not match when connecting to the vCenter Server Sign-on" error while installing VCSA 6.x
book
Article ID: 344688
calendar_today
Updated On:
Products
VMware vCenter Server
Issue/Introduction
Symptoms:
Installing a new vCenter Server Appliance 6.x using an external PSC fails with the error:
The SSL certificate does not match when connecting to the vCenter Server Sign-On: hostname in certificate didnt match <PSC_IP> != <PSC_FQDN>
Unable to add a solution user and administrator user to vCenter Sign-On to the Component Manager Administrators group.
Environment
VMware vCenter Server 6.0.x VMware vCenter Server 6.5.x VMware vCenter Server Appliance 6.0.x VMware vCenter Server Appliance 6.5.x VMware vCenter Server 6.7.x VMware vCenter Server Appliance 6.7.x
Resolution
To resolve this issue check the following:
Verify that the customer DNS reverse lookup enabled for the PSC and nslookup resolves both the IP and FQDN of the PSC.
The SSL Certificate does not match to the pnid of the PSC Node, please check the Subject Alternative Name is same as the pnid of PSC.
Additional Information
To display the PNID of a vCenter Server Appliance, log in to the vCenter Server and run below command: