Aria Workspace and vIDM Page Inaccessible via NSX Load Balancer VIP ("DNS_PROBE_STARTED")
search cancel

Aria Workspace and vIDM Page Inaccessible via NSX Load Balancer VIP ("DNS_PROBE_STARTED")

book

Article ID: 442691

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • When attempting to access the VMware Identity Manager (vIDM) service via the NSX Native Load Balancer Virtual IP (VIP), the web page fails to load and returns a "DNS_PROBE_STARTED" error in the browser.

 

  • Additionally, attempting to bypass the Load Balancer and accessing the vIDM page directly via its IP address fails with the same DNS probe error.

Environment

VMware NSX
VMware Identity Manager

Cause

  • This issue is caused by broken or missing DNS configurations within the environment.
  • The inability of the vIDM VMs to resolve DNS queries to the NSX Loadbalaner IP/FQDN and vice versa, breaks the backend communication and prevents the login page from loading.
  • When performing an nslookup to the vIDM nodes or the NSX managers, the forward or reverse DNS resolution fails on the VIDM or NSX managers.

Resolution

  • Correct the DNS topology and ensure proper name resolution is functioning across all related components.

Perform the following steps:

  1. Fix Backend DNS Records: Verify and configure correct Forward (A) and Reverse (PTR) DNS records for all vIDM nodes and NSX Managers on your internal DNS servers.

  2. Verify vIDM to NSX Resolution: Ensure that all vIDM appliances can successfully resolve the FQDN and IP address of the NSX Managers and the NSX Load Balancer.

  3. Verify Client Resolution: Ensure that the local client machines (end-users) can properly resolve the FQDN and IP of the Load Balancer VIP, as well as the vIDM IP/FQDNs.

For further help, please open a Broadcom support case. Refer to the KB https://knowledge.broadcom.com/external/article/142884