LCMMARKETPLACE13100/var/log/vrlcm/vmware_vrlcm.log file on the Fleet Management appliance contains connection reset or timeout errors:INFO vrlcm[1274] [pool-3-thread-8] [c.v.v.l.c.m.u.MarketPlaceUtil] -- Get Cloud Marketplace access token -- Start.INFO vrlcm[1274] [pool-3-thread-8] [c.v.v.l.c.m.u.MarketPlaceUtil] -- Get Cloud Marketplace access token -- try: 1INFO vrlcm[1274] [pool-3-thread-8] [c.v.v.l.c.m.u.MarketPlaceUtil] -- Get access token url: https://console.cloud.vmware.com/csp/gateway/am/api/auth/api-tokens/authorizeINFO vrlcm[1274] [pool-3-thread-8] [c.v.v.l.c.a.InternalOnlyApiAspect] -- Internal Only Check for: execution(ResponseEntity com.vmware.vrealize.lcm.locker.controller.CredentialController.getPasswordByAlias(String))ERROR vrlcm[1274] [pool-3-thread-8] [c.v.v.l.c.m.u.MarketPlaceUtil] -- Error while getting access token: Connection resetERROR vrlcm[1274] [pool-3-thread-8] [c.v.v.l.c.m.u.MarketPlaceUtil] -- Exception occurred ::java.net.SocketException: Connection reset
curl confirms an active network block:curl -v https://console.cloud.vmware.com/csp/gateway/am/api/auth/api-tokens/authorize* Host console.cloud.vmware.com:443 was resolved.* IPv6: ##:##::#, ##:##::#* IPv4: ##.#.#.#, ##.#.#.#* Trying [##:##::#::1]:443...* Immediate connect fail for ##:##::#::1: Network is unreachable* Trying ##.#.#.#:443...* ALPN: curl offers http/1.1* TLSv1.3 (OUT), TLS handshake, Client hello (1):* CAfile: /etc/pki/tls/certs/ca-bundle.crt* CApath: none* Recv failure: Connection reset by peer* TLS connect error: error:00000000:lib(0)::reason(0)* OpenSSL SSL_connect: Connection reset by peer in connection to console.cloud.vmware.com:443* closing connection #0curl: (35) Recv failure: Connection reset by peerAn internal firewall or proxy blocks the required outbound HTTPS (port 443) traffic from the appliance to Broadcom and VMware servers, resulting in a connection reset.
To allow outbound HTTPS (port 443) from the appliance, whitelist the following endpoints on the firewall or proxy:
https://vcf.broadcom.com
https://eapi.broadcom.com
https://api.broadcom.com
https://dl.broadcom.com
https://console.cloud.vmware.com
If direct internet access cannot be granted immediately, install the management pack manually:
Download the required .pak files from the VCF Solutions Catalog using an internet-connected machine.
Log in to the VCF Operations UI.
Navigate to Administration > Integrations > Marketplace.
Click Upload and Install to upload the downloaded .pak file. For further guidance, refer to Adding and Managing Management Packs from VMware Marketplace