License assignment failed for this host.com.vmware.license.HostRejectedLicenseEvent is triggered in vCenter./var/log/vmware/vpxd/vpxd.log and /var/log/vmware/cis-license/license.log:INFO vpxd #### [vc@#### sub="licenseClient" opID="HeartbeatStartHandler-########-########"] Assign license to host: ''WARNING vpxd #### [vc@#### sub="licenseClient" opID="HeartbeatStartHandler-########-########"] Failed request to VAPI service; Error: --> com.vmware.vapi.std.errors.invalid_argument --> Messages: --> com.vmware.esx.licensing.entitlements.invalid_or_malformed_tokenERROR vpxd #### [vc@#### sub="licenseClient" opID="HeartbeatStartHandler-########-########"] License was unsuccessfully set on host: with error: Error: --> com.vmware.vapi.std.errors.invalid_argument --> Messages: --> com.vmware.esx.licensing.entitlements.invalid_or_malformed_token
During an ESXi host upgrade or reboot in version 9.1, a timing sequence mismatch occurs where vCenter Server initially attempts to push a legacy 9.0 formatted license payload while host services (VAPI provider) are still initializing. The 9.1 host rejects the legacy token due to new cryptographic signature requirements enforced by the 9.1 License Server.
A permanent fix for this issue is planned for a future release.
Workaround:
To work around this issue in the meantime, perform the following steps:
Validate the host license via the command line using the instructions provided in KB 428537.
Manually acknowledge the warning alarm in the vSphere Client.
Refer to the vSphere release notes for the more information on this.