VMware Cloud Community
Kingscorpionus
Contributor
Contributor

Virtual Machine Deployment from Template Failed

Recently, I configured the firewall on each ESXi host as per the Hardening Guide from VMware.  The IP whitelist is set for all running services on the host. This morning I was trying to deploy a VM from template and failed at 27%. Then I tried it again, this time it worked but the VM was deployed to a datastore which was not part of the storage DRS Cluster. That datastore is shared between three DRS clusters.

In an other attempt I disabled the firewall on the host and then I was able to deploy the machine just fine without any error message...Does anyone know what service/port is causing thing.

I am not sure if it is a bug or working as designed. But one thing is bothering me why VMs are being deployed on a datastore which is not port of Storage DRS.

Reply
0 Kudos
8 Replies
KeymanP
Enthusiast
Enthusiast

What is the error message? And can you check did the firewall opened/closed the port 902?

Keyman | VCAP5-DCA, VCP5-DCV, VCP3
Reply
0 Kudos
SureshKumarMuth
Commander
Commander

While deploying it might have asked you the location (datastore) to deply. Make sure you are selecting the correct one.

Regards,
Suresh
https://vconnectit.wordpress.com/
Reply
0 Kudos
vThinkBeyondVM
VMware Employee
VMware Employee

Can you please give more details on firewall configuration that you did step by step?

Also, when you disable the firewall, whether template s getting created on datastore cluster where SDRS is enabled.?

Once we get more clarity on above queries I will try to root cause.


----------------------------------------------------------------
Thanks & Regards
Vikas, VCP70, MCTS on AD, SCJP6.0, VCF, vSphere with Tanzu specialist.
https://vThinkBeyondVM.com/about
-----------------------------------------------------------------
Disclaimer: Any views or opinions expressed here are strictly my own. I am solely responsible for all content published here. Content published here is not read, reviewed or approved in advance by VMware and does not necessarily represent or reflect the views or opinions of VMware.

Reply
0 Kudos
King_Robert
Hot Shot
Hot Shot

is is possible .. can you paste here log regarding the same..when u doing this activity...?

Reply
0 Kudos
Kingscorpionus
Contributor
Contributor

I have confirmed port 902 is opened. I get the below error message. But the strange things is, If I try couple of times, it will work but the machine will be deployed on the datastore which is not a part of Storage DRS.

Reply
0 Kudos
Kingscorpionus
Contributor
Contributor

I select the storage DRS Cluster, I don't have option to pick the datastore. SDRS will select the datastore to deploy machine.

pastedImage_1.png

Reply
0 Kudos
Kingscorpionus
Contributor
Contributor

Can you tell me what logs you want me post here.

Reply
0 Kudos
KeymanP
Enthusiast
Enthusiast

Can you click "Disable Storage DRS for this virtual machine ", then you will be able to select the datastore you want

Keyman | VCAP5-DCA, VCP5-DCV, VCP3
Reply
0 Kudos