cloud builder unable to deploy VCF/management domain fails on error "Failed to get SSH key ESXi host <FQDN>"
book
Article ID: 386968
calendar_today
Updated On:
Products
VMware SDDC Manager
Issue/Introduction
Cloud builder unable to deploy VCF / management domain
vcf-bringup-debug.log:
[bringup,67937cb9dec3b5fb66b496bdcd12556f,6874] ERROR [c.v.e.s.v.v.EsxiHostValidator,pool-2-thread-10] Error occurred while validating ESX host<FQDN> com.vmware.vim.vmomi.client.exception.SslException: javax.net.ssl.SSLPeerUnverifiedException: Certificate for <FQDN> doesn't match any of the subject alternative names: [localhost.localdomain]
Cloud builder workflow fails on "error found during configuration file validation"
Failed to get SSH key ESXi host <FQDN>
Environment
VMware Cloud Foundation 5.x
Cause
This Issue would occur if there is no matching FQDN for the hosts in the Certificate's subject alternative names and validate the vLAN ID's matching the deployment playbook.
Resolution
To re-generate ESXi host certificate to match subject alternate name (SAN) with ESXI host FQDN , refer the following steps.
Log in to the ESXi Host Client.
Enable SSH on the ESXi host.
In the navigation pane, click Manage and click the Services tab.
Select the TSM-SSH service and click Start if not started.
Log in to the ESXi host using an SSH client such as Putty.
Regenerate the self-signed certificate by executing the following command /sbin/generate-certificates