Workload domain or stretched cluster creation fails at Prepare Transport Node Collection task
search cancel

Workload domain or stretched cluster creation fails at Prepare Transport Node Collection task

book

Article ID: 425927

calendar_today

Updated On:

Products

VMware NSX VMware SDDC Manager

Issue/Introduction

  • Creating a workload domain or stretched cluster fails at the Prepare Transport Node Collection task. A message similar to the following is displayed:

    One or more transport node(s) realization failed while creating the transport node collection with profile ########-####-####-####-############ on compute profile collection #######-####-####-####-############:domain-c10 through NSX Manager <NSX manager>.

    Invalid parameter: (0)

  • Messages similar to the following are present in the /var/run/log/nsx-syslog.log file on the ESX hosts:

    2026-01-05T16:53:58Z In(182) nsx-logger: NSX 3326887 - [nsx@4413 comp="nsx-esx" subcomp="curl_wrapper" username="root" level="INFO"] certificate verification ################################ from <NSXmanager>:443 failed: No APH UUID found in CheckTrusted RPC response^@
    2026-01-05T16:53:58Z In(182) nsx-logger: NSX 3326887 - [nsx@4413 comp="nsx-esx" subcomp="curl_wrapper" username="root" level="INFO"] Closing connection 0^@
    2026-01-05T16:53:58Z In(182) nsx-logger: NSX 3326887 - [nsx@4413 comp="nsx-esx" subcomp="curl_wrapper" username="root" level="INFO"] /opt/vmware/nsx-common/python/nsx_utils/curl_wrapper exit code 7^@
    ...
    2026-01-05T16:54:01.495Z Wa(180) nsx-sfhc[2101764]: NSX 2101764 - [nsx@4413 comp="nsx-esx" subcomp="nsxsfhc" tid="2104201" level="WARNING"] Command nsxcli -c "join management-plane <NSX manager>  thumbprint ################################   token **********  node-uuid dfe3fc1d-####-####-####-25f61f217ca8  validate-manager-cert  " failed with return-code 4 (% Node registration failed: 'NSX Manager API certificate is not valid: curl_wrapper: (7) No APH UUID found in CheckTrusted RPC response' ).

  • No changes have been made to the APH certificate created on the NSX manager.

Environment

  • VMware NSX 9.x
  • VMware VCF 9.x

Cause

The curl_wrapper script on the ESX hosts is not accepting the APH certificate presented from the NSX manager nodes. 

Resolution

If you believe you have encountered this issue, open a support case with Broadcom Support and refer to this KB article.

For more information, see Creating and managing Broadcom support cases.