VMware Cloud Community
Newlord
Contributor
Contributor

Error updating the second vcenter connected to one SSO.

I have successfully updated to version  6 sso and first vcenter.

when I start upgrade the second server get the following error:

"The SSL certificate of the Platform Services Controller does not match the specified FQDN or IP address."

ssl sert.jpg

All hosts are available by name and ip address.

How to find a certificate in which the problem and solve it?

I ask the help.

0 Kudos
2 Replies
Newlord
Contributor
Contributor

Logs:

2015-04-16 08:16:08.934+03:00| vcsInstUtil-2562624| I: GetDeploymentType: Using UPGRADE_TYPE_5X property instead of INSTALL_TYPE

2015-04-16 08:16:08.934+03:00| vcsInstUtil-2562624| I: VCSCAValidateRemoteSSO: Platform Services Controller address: [IP]

2015-04-16 08:16:08.934+03:00| vcsInstUtil-2562624| I: VCSCAValidateRemoteSSO: SSO HTTPS port is valid.

2015-04-16 08:16:08.934+03:00| vcsInstUtil-2562624| I: VCSCAValidateRemoteSSO: Retrieving remote SSO version ...

2015-04-16 08:16:23.957+03:00| vcsInstUtil-2562624| I: VCSCAValidateRemoteSSO: Validating remote SSO version ...

2015-04-16 08:16:23.957+03:00| vcsInstUtil-2562624| I: VCSCAValidateRemoteSSO: SSO Version check passed - SSO returned version 6.0.0

2015-04-16 08:16:23.957+03:00| vcsInstUtil-2562624| I: VCSCAValidateRemoteSSO: Validating remote system ...

2015-04-16 08:16:23.957+03:00| vcsInstUtil-2562624| E: QueryServerTimeAndCheckCert: Failed to send request to IP on 443: 12175 0x00000010

2015-04-16 08:16:23.957+03:00| vcsInstUtil-2562624| I: PitCA_MessageBox: Displaying message: "The SSL certificate of the Platform Services Controller does not match the specified FQDN or IP address. The FQDN or IP address reported by the certificate in the Platform Services Controller is VMware default certificate. You must change the FQDN or IP address to match the certificate or correct the certificate of the Platform Services Controller so that the installation can continue."

2015-04-16 08:36:43.869+03:00| vcsInstUtil-2562624| I: CheckRemoteSystem: Their time: (mm/dd/yyyy) 00/00/0000 00:00:00

2015-04-16 08:36:43.869+03:00| vcsInstUtil-2562624| I: CheckRemoteSystem: Our time:   (mm/dd/yyyy) 04/16/2015 05:36:43

2015-04-16 08:36:43.869+03:00| vcsInstUtil-2562624| W: CheckRemoteSystem: Could not check time sync

2015-04-16 08:36:43.869+03:00| vcsInstUtil-2562624| E: VCSCAValidateRemoteSSO: Failed to properly check the remote system

2015-04-16 08:36:43.869+03:00| vcsInstUtil-2562624| I: VCSCAValidateRemoteSSO:

0 Kudos
Dee006
Hot Shot
Hot Shot

Hi,

Hope your issue has been resolve,but just to provide the solution which i face during the enable towards the secondary PSC for the HA.I found this issue has been resolved in the later version of the vCenter Server 6.0 Update 1b.

VMware KB: vCenter Server or Platform Services Controller certificate validation error messages for ...

Even if you faced the same issue,try to provide the host name(vcenter.vmware)insist of IP address to acquired the certificate.The reason for the issue might be due to the installation based on host lookup name,the certificate will be create based on your host lookup name.Hope this will works

- Dee

0 Kudos