20XX-XX-XXT15:31:59.229Z ######## NSX 76893 FIREWALL [nsx@6876 comp="nsx-manager" level="WARNING" reqId="########-####-####-####-########4901" subcomp="manager" username="######"] Error in IDFW api /api/v1/directory/ldap-server?action=CONNECTIVITY for EP /global-infra/sites/<GlobalSiteName>/enforcement-points/default. Error Message - The credentials were incorrect or the account specified has been locked.
/opt/vmware/bin/corfu_tool_runner.py -n nsx -o showTable --tool corfu-browser -t EnforcementPoint
Key:{ "stringId": "/global-infra/sites/<GlobalSiteName>/enforcement-points/default"}
And part of payload will show parentPath same as syslog string and isGlobalConfig set to "true" }, "isGlobalConfig": true, "parentPath": "/global-infra/sites/<GlobalSiteName>", "ownerId": { }, "enforcementPointTypeInfo": { "enforcementPointType": "ENFORCEMENT_POINT_TYPE_NSXT"
VMWare NSX
During Federation offboarding you may have a case where some objects are left behind after removing Global Manager site from NSX.
If you believe you have encountered this issue, please open a support case with Broadcom Support and refer to this KB article.
For more information, see Creating and managing Broadcom support cases.
How to use REST API for nsx and commands
https://developer.broadcom.com/xapis/nsx-t-data-center-rest-api/latest/
How to use and setup IDFW
https://techdocs.broadcom.com/us/en/vmware-cis/nsx/vmware-nsx/4-2/administration-guide/security/identity-firewall.html