VM settings edit fails with "An error occurred while trying to load data" on vCenters in Linked Mode
search cancel

VM settings edit fails with "An error occurred while trying to load data" on vCenters in Linked Mode

book

Article ID: 397120

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

  • When we try to login to vSphere client, we only see blank screen after providing the credentials
  • In a vCenter Enhanced Linked Mode (ELM) configuration, Editing VM settings fails with the error message: "An error occurred while trying to load data. This could be due to temporary outage. You can retry the operation by clicking retry button" in the vSphere Client.

  • In vCenter /var/log/vmware/sso/websso.log shows below errors

YYYY-MM-DDThh:mm:ss INFO websso[82:tomcat-http--46] [CorId=99c27465-d4b1-4978-a63b-108d98975b57] [com.vmware.identity.samlservice.impl.ExternalIdpProvider] Got exception (sleeping before retry)java.lang.Exception: Could not get Saml HOK token for solution user machine
YYYY-MM-DDThh:mm:ss INFO websso[82:tomcat-http--46] [CorId=99c27465-d4b1-4978-a63b-108d98975b57] [com.vmware.identity.saml.impl.TokenLifetimeRemediator] There is a HoK confirmation certificate with end time: YYYY-MM-DDThh:mm:ss.000+0000
YYYY-MM-DDThh:mm:ss ERROR websso[82:tomcat-http--46] [CorId=99c27465-d4b1-4978-a63b-108d98975b57] [com.vmware.identity.providers.SolutionUserHokTokenProviderImpl] Unable to get SAML HOK token for machine solution user
YYYY-MM-DDThh:mm:ss ERROR websso[82:tomcat-http--46] [CorId=99c27465-d4b1-4978-a63b-108d98975b57] [com.vmware.identity.SsoController] Exception while processing external IDP request com.vmware.identity.samlservice.ExtIdpNotFoundException: Exception while  processing External login request

  • In vCenter /var/log/vmware/sso/vmware-identity-sts.log shows below errors

YYYY-MM-DDThh:mm:ss INFO sts[70:tomcat-http--34] [CorId=8abef7bf-051c-4ff0-a226-080fec172ead] [com.vmware.identity.sts.InvalidCredentialsException] Censored exception com.vmware.identity.sts.InvalidCredentialsException: Solution user cert is not valid.

 

Environment

  • vCenter 8.x
  • vCenter 7.x

Cause

The Solution User and Machine SSL certificates on the vCenter Server are expired.

Resolution

To the resolve this issue renew the certificates using vCert 

Note: Take offline snapshots for vCenters in Enhance Linked mode before the certificate renewal.

Additional Information

For similar issues with different causes, refer to related KBs.