VMware Cloud Community
jkensy
Enthusiast
Enthusiast

Cannot login to vRA tenant through Cloud Client (4.5)

Hey all - have to remove orphaned VMs from a tenant vRA.  Tenant is called aecio.com by "name" in administration.  I can log into https://vra-address-fqdn/vcac/org/aecio as jkensy@aecio.com from the webui and this account is a full admin account.

I am using cloud client 4.5 and doing

CloudClient>vra login userpass --user jkensy@aecio.com --tenant aecio.com --server vra-address-fqdn

vRA Password for jkensy@aecio.com: *******************

Error: Failed to Login to vRA server https://vra-address-fqdn, tenant=aecio.com with username jkensy@aecio.com.

I've tried local accounts as well..  nothing is permitted to login.  I am able to login to the --tenant vsphere.local just fine, but the inventory isn't in that client.

Can anyone provide some insight?  Thanks!  BTW - this is vRA 7.3.0

Tags (2)
Reply
0 Kudos
11 Replies
daphnissov
Immortal
Immortal

Your tenant is aecio (without the .com).

Reply
0 Kudos
jkensy
Enthusiast
Enthusiast

Tried that -

CloudClient>vra login userpass --user jkensy@aecio.com --tenant aecio --server hps3vra1.aecio.com

vRA Password for jkensy@aecio.com: ************

Error: Failed to Login to vRA server https://vra-fqdn, tenant=aecio with username jkensy@aecio.com.

CloudClient>

Sighhh...

Here's how the tenant is defined:

Tenants.png

Reply
0 Kudos
daphnissov
Immortal
Immortal

Remove your username just to test

vra login userpass --tenant aecio --server vrafqdn.domain.com

Reply
0 Kudos
jkensy
Enthusiast
Enthusiast

No luck Smiley Sad

CloudClient>vra login userpass --tenant aecio --server hps3vra1.aecio.com

vRA Username: jkensy@aecio.com

vRA Password for jkensy@aecio.com: ************

Error: Failed to Login to vRA server https://hps3vra1.aecio.com, tenant=aecio with username jkensy@aecio.com.

CloudClient>vra login userpass --tenant aecio --server hps3vra1.aecio.com

vRA Username: hpsadmin@vsphere.local

vRA Password for hpsadmin@vsphere.local: **********

vRA  login: [ACTIVE], session: [INACTIVE], user=[hpsadmin@vsphere.local], server=[https://hps3vra1.aecio.com], tenant=[aecio]

IaaS Model Manager login: [INACTIVE]

CloudClient>vra machines list

Error: No data found.

CloudClient>

So I can log into the tenant as a local user but then when doing "vra machines list" I get "Error:  No data found"

Reply
0 Kudos
daphnissov
Immortal
Immortal

If you're logging into a user tenant (aecio) you don't use vsphere.local accounts unless they have been granted access inside that tenant. Your first post showed you were trying to login with a domain user account. So which is it in this case for the aecio tenant?

Reply
0 Kudos
daphnissov
Immortal
Immortal

Also, the hps3vra1 address is the vRA front end? This is what you put in a web browser to access the vRA portal?

Reply
0 Kudos
jkensy
Enthusiast
Enthusiast

Sorry for being confusing - yes, hps3vra1.aecio.com is the web front for vRA

I have given hpsadmin@vsphere.local permissions within that tenant (all permissions available, as a test), and made it part of a business group manager, etc. but when I log into the web with that account he cannot see "Items".  And, no matter what I do, I cannot seem to login with cloud client as the domain user but can login and see all items within the web front end.

Reply
0 Kudos
daphnissov
Immortal
Immortal

If you're on vRA 7.3.0, try going back to Cloud Client 4.4 and see if that helps.

Reply
0 Kudos
jkensy
Enthusiast
Enthusiast

Ok - you know, I vaguely remember that being an issue potentially.  I'll give it a shot.  Thank you for your help!

Reply
0 Kudos
jkensy
Enthusiast
Enthusiast

Unfortunately no difference in cloud client 4.4 or 4.3

Grr - I don't get it

Reply
0 Kudos
daphnissov
Immortal
Immortal

When you launch the .bat file, what  version of Java is it reporting?

Reply
0 Kudos