VMware Horizon Community
AndreasWangen
Contributor
Contributor
Jump to solution

Horizon Connection server cant connect to vcenter - Certificate Validation Failed

Hello, trying to setup a test environment for horizon

And when im connecting to vcenter im getting this "Certificate Validation Failed"

Found this kb article https://kb.vmware.com/s/article/86414?lang=en_US

But all trafic on port 443 is ok between the servers and im able to reach the webui of vcenter from horizon server

0 Kudos
1 Solution

Accepted Solutions
AndreasWangen
Contributor
Contributor
Jump to solution

After talking with vmware support we found that is was the user not having access to vcenter

View solution in original post

0 Kudos
7 Replies
Jubish-Jose
Hot Shot
Hot Shot
Jump to solution

Are you using a self signed certificate? If yes, when you tried to add vCenter to Horizon, did you get a prompt warning that the certificate is not trusted and did you accept it? 

If its a CA signed certificate and vCenter is not connecting, its likely to be a network/port issue.


-- If you find this reply helpful, please consider accepting it as a solution.
0 Kudos
AndreasWangen
Contributor
Contributor
Jump to solution

Self signed on horizon

CA signed on vcenter

 

I cant see any rejected trafic on 443

Does it use any other ports than 443? 

0 Kudos
vBritinUSA
Hot Shot
Hot Shot
Jump to solution

@AndreasWangen The CA that you used for the vCenter, have you added the root-ca cert to the Connection server so it will trust the vCenter Cert?

Please mark helpful or correct if my answer resolved your issue.
0 Kudos
AndreasWangen
Contributor
Contributor
Jump to solution

Yes root-ca cert is added to connection server so it is trusted

Does the self signed cert for the connection server have anything to say here? 

0 Kudos
AndreasWangen
Contributor
Contributor
Jump to solution

After talking with vmware support we found that is was the user not having access to vcenter

0 Kudos
subashv4u
Contributor
Contributor
Jump to solution

Connect the ViewADAM DB and Clear the old Certificate thumbprint of the vcenter.

https://kb.vmware.com/s/article/2012377

Under ViewAdam -

DC=vdi,dc=vmware,dc=int --

OU= Properties

OU= VitualCenter

right click and properties look for the below key and clear the value

pae-VCSslCertThumbprint

Goto the View admin page and accept the Certificate.

 

0 Kudos
Nemkell_
Contributor
Contributor
Jump to solution

Hello!

You mean no access at all, or just don't have enough privileges? I'm asking because I can't access to the vcenter either although we created a user with the necessary rights regarding this article: Privileges Required for the vCenter Server User Without Instant Clones (vmware.com), but when I want to connect the Horizon Server to the vCenter, the "certificate validation failed" message appears. I tried with my own user and it worked, but I'd like to use the service user instead.

0 Kudos