Unable to use the vSphere Configuration Profiles to manage cluster
search cancel

Unable to use the vSphere Configuration Profiles to manage cluster

book

Article ID: 382240

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

When attempting to use the vSphere Configuration Profile manager to apply a configuration baseline to a host you get the error, "Firewall ruleset name 'dynamicruleset' is not predefined user configurable ruleset."

 

 

Environment

If you look at the ESXi host client, or via command line with this command, esxcli network firewall ruleset list. You will find that the ruleset 'dynamicruleset' does not exist on the ESXi host. However, if you look in the json file created when exporting the host configuration in the vSphere Configuration Profile Manager you will see a section similar to this.

{
     "name": "dynamicruleset"
},

Cause

The 'dynamicruleset' does not appear on the host. So, when trying to apply the configuration profile it will error during the remediation process. 

Resolution

Remove the section referencing the 'dynamicruleset' from the json file and import it using the vSphere Configuration Profile Manager in vCenter.