Aria Operations for Logs adapter is throwing error "Unable to create ssl socket factory since root or self signed certificates are absent for the endpoint : vrli adapter" in Aria Operations
search cancel

Aria Operations for Logs adapter is throwing error "Unable to create ssl socket factory since root or self signed certificates are absent for the endpoint : vrli adapter" in Aria Operations

book

Article ID: 449983

calendar_today

Updated On:

Products

VCF Operations/Automation (formerly VMware Aria Suite)

Issue/Introduction

Integration between VMware Aria Operations 8.18.x and VMware Aria Operations for Logs (vRLI) fails during adapter configuration. The following error appears in the adapter logs: unable to create ssl socket factory since root or self signed certificate are

Environment

  • VMware Aria Operations 8.18.x
  • VMware Aria Operations for Logs 8.18.x

Cause

An SSL handshake failure occurs due to a Common Name (CN) or Subject Alternative Name (SAN) mismatch. Aria Operations performs strict endpoint validation. If the vRLI cluster is behind a Load Balancer, the certificate presented must include the Load Balancer FQDN. If the certificate only contains individual node names, the connection is rejected.

Resolution

Regenerate the Aria Operations for Logs certificates to include the Load Balancer information: KB 315949.

  • Identify the Primary node / Load Balancer FQDN for the vRLI deployment.
  • Replace the new certificates as mentioned in KB 315949.
  • Apply the new certificates to the vRLI cluster.
  • Re-attempt the adapter configuration in VMware Aria Operations.
  1.  

 

Additional Information

Contact Support