"Error: Site offboarding is not completed error code 530028" when attempting to onboard LM to GM after force-offboard
search cancel

"Error: Site offboarding is not completed error code 530028" when attempting to onboard LM to GM after force-offboard

book

Article ID: 417788

calendar_today

Updated On:

Products

VMware vDefend Firewall VMware vDefend Firewall with Advanced Threat Prevention

Issue/Introduction

  • GM and LM had issues which led to force offboard of LM using API.
  • When attempting to onboard LM to GM again, an error is received - "Error: Site offboarding is not completed error code 530028"
  • When viewing the offboard status via API - GET policy/api/v1/infra/site/offboarding-status

    "status": "CLEANUP_FAILED",

    "message": "Site offboarding cleanup failed. Cleanup will be retried. Error: [The object path=[/global-infra/domains/<Location Name>/groups/########-###-####-####-############] cannot be deleted as either it has children or it is being referenced by other objects path=[/infra/domains/default/security-policies/default-malicious-ip-block-rules/rules/malicious-ip-at-source-rule,/infra/domains/default/security-policies/default-malicious-ip-block-rules/rules/malicious-ip-at-destination-rule]]",

Environment

VMware NSX - All Versions

Cause

Offboarding of the Local Manager (LM) from its Global Manager (GM) failed, resulting in global entities persisting on the LM and blocking subsequent cleanup operations.

Resolution

Open a Support Request with Broadcom Support to assist with manual database cleanup. 

Creating and managing Broadcom support request (SR) cases