Disabling weak ciphers in NSX breaks communication with SDDC Manager
search cancel

Disabling weak ciphers in NSX breaks communication with SDDC Manager

book

Article ID: 368370

calendar_today

Updated On:

Products

VMware SDDC Manager

Issue/Introduction

After applying KB https://knowledge.broadcom.com/external/article?legacyId=95996  this breaks communication between SDDC Manager and NSXT.

NSX_T Edge and NSX_T Manager accounts showing as disconnected and unable to remediate 

Environment

VCF 5.0

 

Cause

Disabling weak ciphers on the NSXT components breaks communication with the SDDC Manager 

extract from Operations manager log in SDDC when password operation fails: 


2024-05-23T09:09:51.086+0000 ERROR [vcf_om,c881af660,8555] [c.v.e.s.c.u.c.SshCommandExecuter,om-exec-21] Could not connect to the SSH server @ [email protected] for configuration.
com.jcraft.jsch.JSchException: Algorithm negotiation fail

 

Resolution

Revert back the changes made to the sshd_config file in KB https://knowledge.broadcom.com/external/article?legacyId=95996