password_lookup tool indicate that passwords are correct and unchanged.VMware Cloud Foundation 9.0.x
This issue occurs due to the enablement of Lockdown mode on the ESXi hosts in conjunction with a disabled SSH service.
This dual condition blocks the necessary administrative communication pathways and state synchronization mechanisms utilized by the management layer (including SDDC Manager and Fleet UI processes), preventing the collection of health metrics or the execution of host-state remediation.
To restore connectivity and re-establish management synchronization, perform the following steps:
Access the vCenter Server managing the affected ESXi hosts via the vSphere Client.
For each affected ESXi host, navigate to the Configure tab, expand System, and select Security Profile.
Under the Lockdown Mode section, click Edit, set the mode to Disabled, and confirm the configuration change.
Under the Services section of the Security Profile, locate the SSH service, select it, and ensure the service is started and running.
Log in to the VCF Operation interface.
Navigate to Fleet Management > Passwords.
Select the disconnected ESXi hosts.
Click Remediate Password.
Enter the existing password that currently works for direct login to the host.