Deployed and registered skyline appliance, but unable to register vcenter with external PSC - below is error - please provide next steps.
Thanks
Endpoint test failed. Error message: Couldn't create PropertyCollector facade for getting the VC UUID -> java.lang.RuntimeException: Couldn't login the client. -> Couldn't login the client. -> Received SSO error -> The SSL certificate of STS service cannot be verified
Hi Glenn77,
Please, replace the lookup service certificate by following the below KB. VMware Knowledge Base
Please raise a Support Request with VMware GSS (vCenter) Team if you have any doubt or need any further assistance.
Note: Please take a Snapshot and Backup of the PSC and vCenter before making any changes.
Hi Glenn77,
Please reboot the Skyline Appliance and try again, that should fix the issue.
Hi Glenn77,
Please let us know the version of vCenter, is it 6.0 or 6.5?
Does this 6.0 or 6.5 version was upgraded from vCenter 5.5?
While adding an endpoint you need to use PSC FQDN.
Vcenter 6.5 appliance with external PSC appliance
Was likely updated not reinstalled along the way
Using FQDN
VMCA is subordinate CA and has issued certs, but it appears cert used on :7444 is old cert. Not sure if this is proxy or STS and Lookup services.
Hi Glenn77,
Please, replace the lookup service certificate by following the below KB. VMware Knowledge Base
Please raise a Support Request with VMware GSS (vCenter) Team if you have any doubt or need any further assistance.
Note: Please take a Snapshot and Backup of the PSC and vCenter before making any changes.
Hi Glenn77,
Did you try registering the vCenter Server endpoint after the certificate replacement?
Hi Glenn77
Did you try registering the Skyline Appliance after the certificate replacement ?
I had a similar issue that was fixed by using FQDN instead of IP addresses for the PSC and vCenter. Per support, this is a bug and is being worked on for next version.
Hi Glenn77
We see that you were working with a VMware Technical Support Engineer to resolve the STS certificate issue. We would appreciate it if you would come back here and share the final solution with other community members.
Hi slanger,
Thank you for sharing your knowledge.
We have already fixed the FQDN and IP Address issue in 1.0.0.2 however on the above case the STS certificate was expired.