LDAP connection status showing as "Failed" post upgrade to NSX 9.1
search cancel

LDAP connection status showing as "Failed" post upgrade to NSX 9.1

book

Article ID: 442610

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • NSX is upgraded to 9.1
  • Below are the details of the Status seen on NSX UI (System > User Management > Authentication Providers > LDAP)

  • Connection to configured LDAP server is successfull.

root@nsx_manager:~# nc -vz #.#.#.# 636
Connection to #.#.#.# 636 port [tcp/ldaps] succeeded!

  • All the LDAP users were able to login successfully.
  • Below logs are seen under /var/log/syslog on NSX Manager

[Timestamp] WARNING NSX 7585 [nsx@4413 comp="nsx-manager" level="WARNING" logger="LdapIdentitySourcesServiceImpl" msgID="SYSTEM" reqId="########-7ad6-4140-ac60-############" subcomp="manager" threadName="http-nio-127.0.0.1-7440-exec-82271" username="admin"] Unable to map exception type TlsFatalAlert: message is certificate_unknown(46)

 

 

Environment

VMware NSX 9.1
VMware Cloud Foundation 9.1

Cause

Due to the change in underlying security provider

Resolution

This is cosmetic and will be fixed in upcoming NSX 9.x versions.

For further assistance, contact Broadcom Support