VMware Cloud Community
Syik
Contributor
Contributor

Failed to add Host (DMZ) to VC (Internal)

Hi guru,

Failed to add new VI host on my DMZ_net, my VC is located on Internal_net 10.x.x.x where there's a VI host located on DMZ_net 192.168.1.x,

Tested:

1) Able to login/ssh with my VI Client from my PC (located on 10.x.x.x) to the host on DMZ 192.168.1.x

2) Able to ping from VC to VI host and vice versa.

After several minutes after adding the host in my VI client, finally, it showed "Network copy failed for file. c:\Program files\VMware\Infrastructure\VirtualCenter Server\upgrade\vpx-upgrade-esx-6-linux-64192" under the Tasks & events.

Seems it tried to copy some file from the VC to the VI hosts. However, I have opend all ports "Any" for both servers bidirectionally.

Any ideas would be appreciated.

thanks.

0 Kudos
5 Replies
Syik
Contributor
Contributor

VC= 2.5.0

VI Host=2.0.2

0 Kudos
fletch00
Enthusiast
Enthusiast

I get the same error consistently trying to add a ESX 3.5 host to my new VC 2.5 - I've opened a SR on this

TCPDUMP on the ESX host reveals VC is trying repeatedly to communicate to vmware-authd on the ESX host and not getting an answer:

21:52:40.198807 truncated-ip - 41 bytes missing! vc64-01..2630 > esx-06..vmware-authd: P 783:1157(374) ack 1416 win 62825 (DF)

21:52:40.996041 truncated-ip - 41 bytes missing! vc64-01..2630 > esx-06..vmware-authd: P 783:1157(374) ack 1416 win 62825 (DF)

21:52:42.529086 truncated-ip - 41 bytes missing! vc64-01..2630 > esx-06..vmware-authd: P 783:1157(374) ack 1416 win 62825 (DF)

21:52:45.811279 truncated-ip - 41 bytes missing! vc64-01..2630 > esx-06..vmware-authd: P 783:1157(374) ack 1416 win 64240

21:52:49.091387 truncated-ip - 41 bytes missing! vc64-01..2630 > esx-06..vmware-authd: P 783:1157(374) ack 1416 win 64240

21:52:52.265015 truncated-ip - 41 bytes missing! vc64-01.Stanford.EDU.2630 > esx-06.stanford.edu.vmware-authd: P 783:1157(374) ack 1416 win 64240 (DF)

21:52:58.718481 truncated-ip - 41 bytes missing! vc64-01.Stanford.EDU.2630 > esx-06.stanford.edu.vmware-authd: P 783:1157(374) ack 1416 win 64240 (DF)

21:53:11.510089 truncated-ip - 41 bytes missing! vc64-01.Stanford.EDU.2630 > esx-06.stanford.edu.vmware-authd: P 783:1157(374) ack 1416 win 64240 (DF)

ESX hostd.log:

Task Completed : haTask--vim.AgentManager.prepareToUpgrade-17

NfcNetTcpGetSockFd: sockFd = 0, sSockFd = 79

NfcServerLoop: sockFd ready for READ

NfcServerLoop: Got a putfiles info message

NfcNetTcpRead: timed out waiting for data

NfcNet_Recv: Timed out. Sending ping message

NfcNetTcpRead: bRead: -1

NfcNet_Recv: requested 48, recevied only 0 bytes

NfcProcessFilesInfoMsg: recv failed

NfcServerLoop: Error in putFilesInfo

NfcServerLoop: sockFd ready for READ

NfcNetTcpRead: EOF should not be reached

NfcNet_Recv: requested 264, recevied only 0 bytes

NfcGetMessage: recv failed:

NfcServerLoop: Failed to get message, quitting

Nfc_AuthdServerLoop saw error: Network error -- Failed to receive requested message: Connection reset by peer

any insight? Should I copy the upgrade file manually and install it?

VCP5 VSP5 VTSP5 vExpert http://vmadmin.info
0 Kudos
mike_laspina
Champion
Champion

Hello,

I would recommend that you do not run the management network in a DMZ. Add a physical network adaptor on the host and then define it as the management network.

Use VLANS to separate your DMZ traffic on the ESX host.

http://blog.laspina.ca/ vExpert 2009
0 Kudos
fletch00
Enthusiast
Enthusiast

I'm not sure why this worked:

1) scp vpx-upgrade-esx-7* ESXserver

2) ./vpx-upgrade-esx-7* as root on ESX server

3) cd vpx-upgrade-installer ; rpm -Uvh *rpm (says already installed)

On the next add attempt, this host was added

Now I'm getting the same "Network copy of file failed" on another ESX host add (this one is 3.0.2)

VCP5 VSP5 VTSP5 vExpert http://vmadmin.info
0 Kudos
fletch00
Enthusiast
Enthusiast

Well, I did a service mgmt-vmware restart for about the 10th time and this time the ESX 3.0.2 host was added

I'm vMotioning between the ESX hosts now with the new VC so all is good..

thanks

VCP5 VSP5 VTSP5 vExpert http://vmadmin.info
0 Kudos