NSX Adapter 'Incorrect Credentials' Error and Manual Rotation Solution
search cancel

NSX Adapter 'Incorrect Credentials' Error and Manual Rotation Solution

book

Article ID: 429390

calendar_today

Updated On:

Products

VCF Operations

Issue/Introduction

Validation of NSX cloud account integration fails within VCF Operations. This typically occurs when system-managed credentials fall out of synchronization.

  • NSX adapter instance displays a "Warning" status.
  • Manual "Test Connection" fails with: Error - Failed to establish connection to NSX manager due to an incorrect username or password.
  • /storage/log/vcops/log/analytics-<id>.log contains: Failed to create service accounts. SvcAccountsCreationResult is null.

Environment

  • VMware Cloud Foundation (VCF) 9.x
  • VCF Operations 9.x

Cause

  1. The NSX Manager "root" account is "Disconnected" in SDDC Manager Password Management (often following an out-of-band update), preventing VCF Operations from invoking credential APIs.
  2.  NSX Manager appliance was reverted to a snapshot without a corresponding reversion of VCF Operations.
  3. Environmental issue, which causes performance issues on NSX manager appliance, which leads to service account creation API call timeouts.

Resolution

  1. Log into SDDC Manager UI and navigate to Administration → Password Management.
  2. Locate the NSX Manager "root" account. If status is "Disconnected," click Remediate and provide current valid credentials to restore "Connected" status.
  3. Log into VCF Operations UI and navigate to Administration → Integrations.
  4. Expand the VCF Instance, select the impacted domain, and click the NSX tab.
  5. Next to System managed credentials, click Rotate. (The existing service account gets deleted and a new service account is created).

  6. Save the configuration and perform a Test Connection.

    Note: Same applies for vCenter Server account.