Quantcast
Channel: VMware Communities : Popular Discussions - vCenter™ Server
Viewing all 18256 articles
Browse latest View live

vCenter 5.5 Web Client shows incorrect inventory

$
0
0

I upgraded my vCenter to 5.5 from 5.1 and it works except the Web Client has incorrect inventory data.  It is missing some VMs and has some ghost VMs that don't actually exist.  There aren't any error messages that suggest the server is malfunctioning.  The really strange thing is that when I connect with the vSphere Client on Windows, everything is correct there.  Also Veeam shows all the correct inventory when it connects to the vCenter server.  So its only the Web Client that is wrong.  Has anyone experienced this or have any ideas on how to force the Web Client to refresh?

 

edit: forgot to mention this is VCSA


High memory usage on server - java.exe and tomcat.exe

$
0
0

Hello I have vCenter Server, vSphere Client, vSphere update manager, and vSphere web client installed on my server.

 

I see that there are 3 java.exe processes taking up 2.3GB (all together), and tomcat6.exe taking up 750mb.

One Java process is taking up 1.2GB of ram.

Another Java process is taking up 570 MB of ram.

Another Java process is taking up 470 MB of ram.

 

So all together they are taking up 3gb of memory on this server.  Is this normal?

 

Or is there a way to get these processes down on RAM usage?

vCenter 5.5 AD Authentication Help

$
0
0

Hello,

 

I was successfully able to install my vCenter Server 5.5. For identity sources I have vsphere.local as default but I have also set-up AD (Integrated Windows Authentication) under configuration. I want to be able to log on using an AD account.

 

I am able to set vCenter Server permissions using the AD account (users / groups populate just fine from AD domain) and set it with role of Administrator. However I can't log on using the AD account to vCenter server. I keep getting that the username / password is incorrect though I know it isn't. Am I missing something? I have tried in context of

domain\user

user@domain.local

user itself but no go.

 

Any advise is greatly appreciated.

 

Regards,

 

GV

Datastore Space Utilization - 'Other' File Types

$
0
0

Hi, All.

 

We have a SATA FC LUN, presented to 3 x ESX 4.1 hosts and 1 x ESXi 4.1 host (all fully patched) from an IBM DS4800 SAN. We wanted to provision some new test VMs and noticed that the provisioned space didn't add up the total of the VMs (see attached images):

 

1.JPG

2.JPG

The 'Performance' view is the most revealing. It shows 266GB of 'other' data on the datastore; the question is, what is it?

 

3.JPG

Querying the datastore via the vSphere Client, ESX console and PowerCLI reveals nothing. The totals match with the total of the provisioned VMs.

 

Any ideas what this could be? There are no snapshots, or large data dumps (ISOs etc) on the datastore as far as I can see.

 

Thanks,

Carl

vCenter 5 Web Client Service does not start

$
0
0

After the installation of the Web Client Server on the vCenter Server (with no errors) the Web Client Service won't start.

 

In the windows log following error is reported

 

The vSphere Web Client service terminated with service-specific error Incorrect function.....

Event ID 7024

EventRecord ID 2655

 

The Server is a Windows 2008 R2 SP1 Server with vCenter 5.0

 

Any Ideas why the Web Client Service does not start?

 

Thanks

Remove vSphere Web Client Evaluation Mode License

$
0
0

We recently installed vCenter Server Appliance to replace the existing vCenter server.  It automatically installs a Evaluation Mode license and then gives warnings that licenses are about to expire.  Since we already own an Enterprise license, we added these licenses to the new vCenter server and then added the existing hosts to the new vCenter server.  The hosts were added to the correct license key and the vCenter server was added to the correct license key.  The Evaluation Mode license now has a 0 usage.  Everything is working correctly except that the eval license is still sitting there and we are still getting warnings.  It appears that the only way to get rid of this is to upgrade the eval license to a purchased license, but we don't need to upgrade since we already have a valid Enterprise license.

 

How can we remove the eval license and remove the warnings that this is generating?

Unable to decrypt passwords in customization spec

$
0
0

The exact error I get when I attempt to deploy a template is "The virtualcenter server is unable to decrypt passwords stored in the customization specification."

 

I have found previous mention that when you uninstall VC and then reinstall it you can no longer use old customization specifications.  I have done this, but I have since DELETED all old specs.

 

I cannot even deploy a template with brand new customization settings (although I am assuming it saves those settings to a temp file for sysprep to use).  Have I fubarred myself completely by previously uninstalling VC server?

 

Any help is appreciated.  Thanks!

how many vCenter I need for 2 sites

$
0
0

I have two sites over fiber WAN. Main and remote. Currently my vCenter manages my main office hosts. I am planing to add some hosts at a remote site.

Should I install a second vCenter or should I stretch the one I have to manage the second sites?

 

Thank you for any help.

Rene


Installing vcenter appliance is not an easy thing

$
0
0

Maybe it was firefox's block of flash, maybe there's a problem with the client integration plugin, but firefox keeps requesting to restart it due to the plugin being installed. Got a clean copy and then it worked, although I do get the occasional time out when opening the installation page.

 

I was a bit surprised I needed a dhcp server running despite providing a fixed ipaddress when installing the platform controller, but I got that installed as well. The problem I'm currently having is installing the vcenter bit, by itself. Filling in all the requested info and letting the installation run its course, I get the following results.

vcsa.jpg

The installation page displays the message

Failed to download vCenter Server support bundle logs.All other logs can be found at

C:\Users\admin\AppData\Local\VMware\CIP\vcsaInstaller\sessions\session_0001\logs

 

ovftool.log says (at the end)

2015-07-16T11:26:55.042+02:00 verbose -[03716] [Originator@6876 sub=Default] Parsing URL

2015-07-16T11:26:55.062+02:00 verbose -[03716] [Originator@6876 sub=Default] Using file size as progress measure

2015-07-16T11:26:55.062+02:00 verbose -[03712] [Originator@6876 sub=Default] OvfPackageSourceBase getting file source

2015-07-16T11:26:55.501+02:00 verbose -[03712] [Originator@6876 sub=Default] HttpWriterFactory web request : https://10.171.33.1:443/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-0.vmdk

2015-07-16T11:26:55.501+02:00 verbose -[03712] [Originator@6876 sub=Default] Initializing new curl session

2015-07-16T11:26:55.503+02:00 verbose -[03712] [Originator@6876 sub=Default] Parsing URL

2015-07-16T11:26:55.503+02:00 verbose -[03712] [Originator@6876 sub=Default] https://10.171.33.1:443/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-0.vmdk is redirected to https://10.171.33.1/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-0.vmdk

2015-07-16T11:26:55.503+02:00 verbose -[03712] [Originator@6876 sub=Default] Changing HttpWriterFactory path to https://10.171.33.1/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f

2015-07-16T11:27:16.214+02:00 verbose -[00764] [Originator@6876 sub=HttpConnectionPool-000001] [RemoveConnection] Connection removed; cnx: <SSL(<io_obj p:0x02309cc0, h:-1, <TCP '0.0.0.0:0'>, <TCP '10.171.33.1:443'>>)>; pooled: 0

2015-07-16T11:27:26.221+02:00 verbose -[00764] [Originator@6876 sub=HttpConnectionPool-000002] [RemoveConnection] Connection removed; cnx: <SSL(<io_obj p:0x02309d78, h:-1, <TCP '0.0.0.0:0'>, <TCP '10.171.33.1:443'>>)>; pooled: 0

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] Closing writer. Locator: https://10.171.33.1:443/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-0.vmdk (Written bytes: 523100672)

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] Curl session torn down

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] OvfPackageSourceBase getting file source

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] HttpWriterFactory web request : https://10.171.33.1:443/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-1.vmdk

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] Initializing new curl session

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] Parsing URL

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] https://10.171.33.1:443/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-1.vmdk is redirected to https://10.171.33.1/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-1.vmdk

2015-07-16T11:29:24.749+02:00 verbose -[03712] [Originator@6876 sub=Default] Changing HttpWriterFactory path to https://10.171.33.1/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f

2015-07-16T11:30:22.095+02:00 verbose -[03712] [Originator@6876 sub=Default] Closing writer. Locator: https://10.171.33.1:443/ha-nfc/5206d269-83ce-6281-35f7-8a61c6798a7f/disk-1.vmdk (Written bytes: 1369236992)

2015-07-16T11:30:22.095+02:00 verbose -[03712] [Originator@6876 sub=Default] Curl session torn down

2015-07-16T11:30:22.095+02:00 verbose -[03716] [Originator@6876 sub=Default] Ovf convertion finished

2015-07-16T11:30:22.095+02:00 verbose -[03716] [Originator@6876 sub=Default] Vi4Target::Complete: Unexpected number of tasks running on target: 0

2015-07-16T11:30:22.953+02:00 verbose -[02820] [Originator@6876 sub=Default] Caught exception while sending lease progress: vmodl.fault.SystemError

2015-07-16T11:31:24.651+02:00 verbose -[03716] [Originator@6876 sub=Default] OutputFilePath :

2015-07-16T11:31:24.979+02:00 verbose -[03716] [Originator@6876 sub=Default] Url did not respond, so we got exception!

2015-07-16T11:31:25.103+02:00 verbose -[03716] [Originator@6876 sub=Default] Url did not respond, so we got exception!

2015-07-16T11:31:25.213+02:00 verbose -[03716] [Originator@6876 sub=Default] Url did not respond, so we got exception!

2015-07-16T11:31:25.369+02:00 verbose -[03716] [Originator@6876 sub=Default] Url did not respond, so we got exception!

2015-07-16T11:31:25.509+02:00 verbose -[03716] [Originator@6876 sub=Default] Url did not respond, so we got exception!

2015-07-16T11:31:25.509+02:00 verbose -[03716] [Originator@6876 sub=Default] Too many exceptions, stop monitoring this VM!

 

vcsa_0000.log:

2015-07-16 11:36:18.322012 Progress Controller: [RPMInstallProgress] - RPM Install Success

2015-07-16 11:36:21.878818 CIP Service: [VCSA INFO] fetch File form VM - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1427","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"data\":\"\"}"]}

2015-07-16 11:36:23.329621 CIP Service: [VCSA ERROR] Error fetching File form VM:{"type":"error","statusCode":"PROC_FAIL_PROCESS_ALREAD_IN_MAP","message":"Failed to start file transfer; status: PROC_FAIL_PROCESS_ALREAD_IN_MAP","isFinal":"true","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1429","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia"}

2015-07-16 11:36:23.329621 CIP Service: [VCSA INFO] fetch File form VM - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1427","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"{\"status\": \"success\", \"info\": [], \"question\": null,\n          \"progress_message\": {\"args\": [], \"localized\": \"\", \"translatable\": \"\"}, \"warning\": [], \"error\": null,\n          \"progress\": 100}\n","isFinal":"true"}

2015-07-16 11:36:29.070431 CIP Service: [VCSA INFO] fetch File form VM - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1432","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"data\":\"\"}"]}

2015-07-16 11:36:30.536833 CIP Service: [VCSA INFO] fetch File form VM - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1432","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"{\n    \"status\": \"error\", \n    \"info\": [], \n    \"question\": null, \n    \"progress_message\": {\n        \"args\": [\n            \"VMware Single Sign-On User Creation\"\n        ], \n        \"id\": \"install.ciscommon.component.starting\", \n        \"localized\": \"Starting VMware Single Sign-On User Creation...\", \n        \"translatable\": \"Starting %(0)s...\"\n    }, \n    \"warning\": [], \n    \"error\": {\n        \"resolution\": {\n            \"id\": \"install.default.failure.resolution\", \n            \"localized\": \"This is an unrecoverable error, please retry install. If you run into this error again, please collect a support bundle and open a support request.\", \n            \"translatable\": \"This is an unrecoverable error, please retry install. If you run into this error again, please collect a support bundle and open a support request.\"\n        }, \n        \"detail\": [\n            {\n                \"args\": [\n                    \"Command: ['/usr/lib/vmware-vmafd/bin/dir-cli', 'service', 'create', '--name', 'machine-c380429a-fc62-40ce-be76-8f9702a455b5', '--cert', '/etc/certs/machine/machine.crt', '--ssogroups', 'ComponentManager.Administrators,SystemConfiguration.Administrators', '--ssoadminrole', 'Administrator']\\nStderr: dir-cli failed. Error 68: Possible errors: \\nLDAP error: Already exists \\nWin Error: Operation failed with error ERROR_TOO_MANY_NAMES (68) \\n\"\n                ], \n                \"id\": \"install.ciscommon.command.errinvoke\", \n                \"localized\": \"An error occurred while invoking external command : 'Command: ['/usr/lib/vmware-vmafd/bin/dir-cli', 'service', 'create', '--name', 'machine-c380429a-fc62-40ce-be76-8f9702a455b5', '--cert', '/etc/certs/machine/machine.crt', '--ssogroups', 'ComponentManager.Administrators,SystemConfiguration.Administrators', '--ssoadminrole', 'Administrator']\\nStderr: dir-cli failed. Error 68: Possible errors: \\nLDAP error: Already exists \\nWin Error: Operation failed with error ERROR_TOO_MANY_NAMES (68) \\n'\", \n                \"translatable\": \"An error occurred while invoking external command : '%(0)s'\"\n            }, \n            {\n                \"args\": [\n                    \"machine-c380429a-fc62-40ce-be76-8f9702a455b5\"\n                ], \n                \"id\": \"install.ciscommon.vecs.create.entry\", \n                \"localized\": \"Error in creating new service entry machine-c380429a-fc62-40ce-be76-8f9702a455b5.\", \n                \"translatable\": \"Error in creating new service entry %(0)s.\"\n            }\n        ], \n        \"componentKey\": \"soluser\", \n        \"problemId\": null\n    }, \n    \"progress\": 12\n}","isFinal":"true"}

2015-07-16 11:36:30.536833 Progress Controller: [VCSA ERROR] - First Boot error

2015-07-16 11:36:36.277643 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1436","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:36:37.728446 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1436","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:36:37.728446 Progress Page: [VCSA ERROR] Error in downloading support bundle

2015-07-16 11:36:48.476865 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1441","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:36:49.943267 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1441","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:36:49.943267 Progress Page: [VCSA ERROR] Error in downloading support bundle

2015-07-16 11:37:00.691686 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1445","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:37:02.142489 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1445","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:37:02.142489 Progress Page: [VCSA ERROR] Error in downloading support bundle

2015-07-16 11:37:12.890908 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1450","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:37:14.341710 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1450","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:37:14.341710 Progress Page: [VCSA ERROR] Error in downloading support bundle

2015-07-16 11:37:25.090129 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1454","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:37:26.540932 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1454","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:37:26.540932 Progress Page: [VCSA ERROR] Error in downloading support bundle

2015-07-16 11:37:37.320551 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1458","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:37:38.771353 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1458","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:37:38.771353 Progress Page: [VCSA ERROR] Error in downloading support bundle

2015-07-16 11:37:49.519772 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1463","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:37:50.970574 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1463","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:37:50.970574 Progress Page: [VCSA ERROR] Error in downloading support bundle

2015-07-16 11:38:01.718993 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"PROCESS_STATUS","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1467","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"false","item":["{\"error\":\"vim.fault.FileNotFound\"}"]}

2015-07-16 11:38:03.169796 CIP Service: [VCSA INFO] Get VM Support Bundle - result:{"type":"result","statusCode":"OK","sessionId":"JjIO-RFKv-bTiF-kAtx","requestId":"1467","requestComponentId":"fileTransfer","requestObjectId":"8088-jT99-8gEX-Xsia","result":"","isFinal":"true"}

2015-07-16 11:38:03.169796 Progress Page: [VCSA ERROR] Error in downloading support bundle

 

Help?

Error: Cannot synchronize host : Cannot complete login due to an incorrect user name or password

$
0
0

Hi,

 

Few days back 3 of my ESX 4.1 servers showed warning in vcenter server Error: Cannot synchronize host : Cannot complete login due to an incorrect user name or password:"..... i tried to Login every host but same error occurs everytime.... EVEN I AM UNABLE TO LOGIN ALL 3 HOSTS FROM DIRECT CONSOLE....... All VMs are up and running on the ESX hosts... I have attached A file with snapshots from vcenter depicting errors....

 

Please advice what to do

vCenter 5.1 SSO and failure to successfully authenticate users

$
0
0

I have experienced this problem with the 5.1 upgrade including the latest 5.1.0b. In fact the latest patch makes it impossible to add users explicitly via the vSphere client whereas previously I could do this.

 

The problem description is as follows:

  • Users do not authenticate via the web client or via vSphere client
  • Users receive the error "Cannot complete login due to an incorrect user name or password" on the vSphere client
  • Users receive the error "The authentication server returned an unexpected error: ns0:RequestFailed: Internal Error while creating SAML 2.0 Token. The error may be caused by a malfunctioning identity source.

 

Things I have tried:

  • I have followed this article but the solution re: RPC server not available does not apply as this does not appear in the logs @ http://kb.vmware.com/kb/2034798
  • Added new domain users
  • Explicitly added users in the vSphere client giving them full administrative privileges and propogating to all child objects
  • Domain groups which the users are part of (IT Operations) are added under SSO administrators group (SSO Users and Groups --> Groups --> __Administrators__ have the principals 'ITOperations' and 'Domain Admins' - they are both Active Directory groups)

 

Observations:

  • Putting the user in the 'Domain Admins' group allows the user to successfully log-in to both vSphere and web clients - obviously this is not a practical solution to the problem but unsure as to why it works - members of the IT Operations group can successfully log-in to the vCenter server so also unsure as to what permissions would be required for this to work.
  • Granting users explicit access via the vSphere client used to work in previous version of 5.1.0 - with 5.1.0b the users get the "Cannot complete login" error

 

Our set-up:

  • vCenter sits on Server 2008 R2 Enterprise
  • Active Directory runs in our environment and handles all log-ins - SSO should be set-up to intergrate itself with AD but not sure why it's not working
  • 1 ESXi 5.0 host

 

imsTrace log:

2013-01-03 13:48:51,781, [castle-exec-1], (LocalisAccessHelper.java:567), trace.com.rsa.ims.localis.LocalisAccessHelper, DEBUG, vCenter.Company.local,,,,Invoking GetAllLocalOSDomains() Local OS call
2013-01-03 13:48:51,842, [castle-exec-1], (LocalisAccessHelper.java:575), trace.com.rsa.ims.localis.LocalisAccessHelper, DEBUG, vCenter.Company.local,,,,GetAllLocalOSDomains Local OS call status 0
2013-01-03 13:48:51,855, [castle-exec-1], (LocalisAccessHelper.java:523), trace.com.rsa.ims.localis.LocalisAccessHelper, DEBUG, vCenter.Company.local,,,,Invoking GetUserGroupsByName(COMPANY\vspheretest) Local OS call
2013-01-03 13:48:51,958, [castle-exec-1], (LocalisAccessHelper.java:531), trace.com.rsa.ims.localis.LocalisAccessHelper, DEBUG, vCenter.Company.local,,,,GetUserGroupsByName Local OS call status 6
2013-01-03 13:48:51,964, [castle-exec-1], (GroupAccessLocalIS.java:313), trace.com.rsa.ims.admin.dal.localis.PrincipalAccessLocalIS, DEBUG, vCenter.Company.local,,,,Lookup failure: [GroupInfo.c:254] NetUserGetLocalGroups failed: Access is denied.

 

2013-01-03 13:48:51,969, [castle-exec-1], (SecurityTokenServiceImpl.java:117), trace.com.rsa.riat.sts.impl.SecurityTokenServiceImpl, ERROR, vCenter.Company.local,,,,Error while trying to generate RequestSecurityTokenResponse
com.rsa.common.UnexpectedDataStoreException: Unexpected Local OS exception
    Caused by: com.rsa.ims.localis.LocalisAccessError: Local O/S Identity Source Error: LOCALIS_STATUS_INTERNAL, extended error: 5 : [GroupInfo.c:254] NetUserGetLocalGroups failed: Access is denied.

 

imsRuntimeAudit log:

2013-01-03 13:48:51,580, <longstring1>,<longstring2>,,192.168.0.110,AUTHN_LOGIN_EVENT,13002,SUCCESS,AUTHN_METHOD_SUCCESS,<longstring3>,<longstring4>,<longstring5>,<longstring6>,vspheretest,vspheretest,SYSTEM,,,,,,000000000000000000001000f0022001,LDAP_Password,,,,,,,,,,,,,

 

vpxd log:

2013-01-03T13:48:50.565Z [00620 info '[SSO]' opID=C001001B-00000004-3b] [UserDirectorySso] Authenticate(vspheretest, "not shown")
2013-01-03T13:48:52.049Z [00620 error '[SSO]' opID=C001001B-00000004-3b] [UserDirectorySso] AcquireToken SsoException: Unexpected SOAP fault: ns0:RequestFailed; request failed.
2013-01-03T13:48:52.049Z [00620 error 'authvpxdUser' opID=C001001B-00000004-3b] Failed to authenticate user <vspheretest>
2013-01-03T13:48:56.051Z [00620 info 'commonvpxLro' opID=C001001B-00000004-3b] [VpxLRO] -- FINISH task-internal-574 --  -- vim.SessionManager.login --
2013-01-03T13:48:56.051Z [00620 info 'Default' opID=C001001B-00000004-3b] [VpxLRO] -- ERROR task-internal-574 --  -- vim.SessionManager.login: vim.fault.InvalidLogin:
--> Result:
--> (vim.fault.InvalidLogin) {
-->    dynamicType = <unset>,
-->    faultCause = (vmodl.MethodFault) null,
-->    msg = "",
--> }
--> Args:
-->

Error 1068 When trying to start vCenter Server Service

$
0
0

i am getting this Error 1068 When trying to start vCenter Server Service. Any Solution for this?

VMs are inaccessible, shared LUN is inactive? What is the problem?

$
0
0

Dear all,

 

Hi I am working on Vsphere 5.5. My VMs are greyed out and are inaccessible, and my shared datastore is inactive, iscsi target server is up and working, all the paths and targets are visible, unable to find what's the problem. Kindly provide me a solution. Please find the attached screen shots.

Unable to reset administrator@vsphere.local with vdcadmintool (failed 9100)

$
0
0

I'm trying to reset the administrator@vsphere.local password but it fails every time...

 

I'm using this document : VMware KB: Cannot change the administrator@vsphere.local password after upgrading from vCenter Server 5.1 to 5.5

But everytime I try it fails with code 9100:

Here is my log:

==================

Please select:

0. exit

1. Test LDAP connectivity

2. Force start replication cycle

3. Reset account password

4. Set log level and mask

5. Set vmdir state

==================

 

 

3

  Account DN: cd=administrator,cn=users,dc=vsphere,dc=local

VmDirForceResetPassword failed (9100)

 

Anyone know how to fix this ??

VMware vCenter service stops with SQL DB size errors

$
0
0

Hi,

 

We run VMware vCenter 4.1 with 3 ESX hosts, and 50 VMs. vCenter is running on Windows 2008 R2, with SQL 2005 Express SP2.

 

Yesterday our virtual backup failed, saying it couldn't connect to the vCenter agent. When I looged into the issue, it appeared that the vCenter Server service had stopped. Up on further investigation it appears that the SQL Express database had reached 4GB in size, which is the limited, and this caused the vCenter service to fall over.

 

I've checked some forum posts, and have performed the following:

  • Set a database retention policy for tasks & events, this was originally un-checked, but I have checked it, and set it to 90 days initially, and now 30 days.
  • Found a script on the VMware forum called VCDB_table_cleanup_MSSQL_V4.X.sql which can cleanup the database. I set it to delete data older (changing SET @DELETE_DATA = 1) than 90 days, and it removed 130,000+ rows.
  • Performed a database shrink & file shrink on the data file - this only got me back 9mb?
  • Performed a database shrink & file shrink on the log file - this got back a little more, about 100mb.
  • Changed the log file size from 460mb to 1024mb, in the database properties > files settings.

 

However, even after all of the above, when I restart the server, or stop & start the vCenter service, the following errors are logged in the application log:
-------------------------------------------
Log Name:      Application
Source:        MSSQL$SQLEXP_VIM
Date:          16/08/2011 08:51:44
Event ID:      1827
Task Category: (2)
Level:         Error
Keywords:      Classic
User:          SYSTEM
Description:
CREATE DATABASE or ALTER DATABASE failed because the resulting cumulative database size would exceed your licensed limit of 4096 MB per database.
-------------------------------------------
Log Name:      Application
Source:        MSSQL$SQLEXP_VIM
Date:          16/08/2011 08:51:44
Event ID:      1105
Task Category: (2)
Level:         Error
Keywords:      Classic
User:          SYSTEM
Description:
Could not allocate space for object 'dbo.VPX_BINARY_DATA'.'PK_VPX_BIN_DATA' in database 'VIM_VCDB' because the 'PRIMARY' filegroup is full. Create disk space by deleting unneeded files, dropping objects in the filegroup, adding additional files to the filegroup, or setting autogrowth on for existing files in the filegroup.
-------------------------------------------
Log Name:      Application
Source:        VMware VirtualCenter Server
Date:          16/08/2011 08:51:44
Event ID:      1000
Task Category: None
Level:         Error
Keywords:      Classic
User:          N/A
Description:
The description for Event ID 1000 from source VMware VirtualCenter Server cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.

If the event originated on another computer, the display information had to be saved with the event.

The following information was included with the event:

[Ldap] Failed to save LDAP backup data to database: "ODBC error: (42000) - [Microsoft][SQL Native Client][SQL Server]Could not allocate space for object 'dbo.VPX_BINARY_DATA'.'PK_VPX_BIN_DATA' in database 'VIM_VCDB' because the 'PRIMARY' filegroup is full. Create disk space by deleting unneeded files, dropping objects in the filegroup, adding additional files to the filegroup, or setting autogrowth on for existing files in the filegroup." is returned when executing SQL statement "INSERT INTO VPX_BINARY_DATA WITH (ROWLOCK) (ID, DATA_TYPE, BIN_DATA, CREATED_TIME, CHANGE_ID) VALUES (?, ?, ?, ?, ?)"
the message resource is present but the message is not found in the string/message table
-------------------------------------------

 

Can anyone provide another solution to this issue? We need to be able to perform a successful backup!

 

Any help or suggestions appreciated!

 

Ben


VM shows alert icon with no alarms triggered

$
0
0

I have been having phantom alarms lately. Virtual machines will show the red alert icon with no alarms triggered. I checked the VM, the host, the cluster, the folder, the datacenter, and vcenter but none of those objects have any triggered alarms either. The cluster does not have HA or DRS enabled.

 

I had several VMs in this condition so I restarted vCenter server, which usually solves the problem for a while. However, this time two of the VMs have retained their alert state through the vCenter server restart.

 

I ran this powercli script on the trouble VMs and every alarm state was either gray or green. How can I find out what is causing the VMs to red exclamation point alert symbol?

 

$vm = Get-VM -Name VM | Get-View
foreach($state in $vm.DeclaredAlarmState){
    $alarm = Get-View $state.Alarm
    Write-Host "name:"
    Write-Host $alarm.info.name
    Write-Host "overall status:"
    Write-Host $state.OverallStatus
}

Migration Error: pbm.fault.PBMFault.summary

$
0
0

Currently have an ESX 4.1 server which I'm trying to migrate my VM from to a ESXi 5.5 server.  When I try to migrate I get a pbm.fault.PBMFault.summary with no additional information.  Logged into my vCenter server via vSphere Client.

 

Ideas?

vCenter Server Appliance (SLES) out of disk space, service cannot start

$
0
0

Hi everyone

 

We had a scheduled maintenance window over the weekend while some work was carried out elsewhere in the building. As a precaution we shutdown the infrastructure that we we still keep onsite (the rest is in colo). So all we have is a 2 node ESXi cluster, managed by vCenter Server Appliance (Novell SUSE Linux Enterprise 11 64bit). It only has 6 VMs running on it as most of them have been migrated offsite.

 

This morning we started up the OpenFiler NFS storage box and the ESXi nodes. All VMs started ok, including the vCenter Server Appliance.

However I was unable to connect to the vCenter Appliance using vSphere Client. I could connect to the ESXi nodes directly without problems. DNS hostnames all resolve to the IP addresses without problems.

 

Looking at the vSphere Client logs I see the following message each time I tried to connect:

System.Net.Sockets.SocketException: No connection could be made because the target machine actively refused it 10.10.0.205:443

 

So I connected to the vCenter Appliance over SSH and it looks like it's run out of disk space. Here's the df and mount output:

vlevcenter01:/ # df -h

Filesystem            Size  Used Avail Use% Mounted on

/dev/sda3             9.8G  9.8G     0 100% /

devtmpfs              4.0G  104K  4.0G   1% /dev

tmpfs                 4.0G  4.0K  4.0G   1% /dev/shm

/dev/sda1             130M   18M  105M  15% /boot

/dev/sdb1              20G  3.8G   15G  21% /storage/core

/dev/sdb2              20G  717M   18G   4% /storage/log

/dev/sdb3              20G   19G     0 100% /storage/db

 

 

 

vlevcenter01:/ # mount -l

/dev/sda3 on / type ext3 (rw,acl,user_xattr)

proc on /proc type proc (rw)

sysfs on /sys type sysfs (rw)

debugfs on /sys/kernel/debug type debugfs (rw)

devtmpfs on /dev type devtmpfs (rw,mode=0755)

tmpfs on /dev/shm type tmpfs (rw,mode=1777)

devpts on /dev/pts type devpts (rw,mode=0620,gid=5)

/dev/sda1 on /boot type ext3 (rw,acl,user_xattr)

/dev/sdb1 on /storage/core type ext3 (rw)

/dev/sdb2 on /storage/log type ext3 (rw)

/dev/sdb3 on /storage/db type ext3 (rw)

 

So the database and root partitions have run out of space. Looking in /var/log/localmesages:

Jul 15 10:10:51 vlevcenter01 startproc: startproc: Empty pid file /var/run/slapd/slapd.pid for /usr/lib/openldap/slapd
Jul 15 10:10:51 vlevcenter01 startproc: startproc:  exit status of parent of /usr/lib/openldap/slapd: 1
Jul 15 10:10:52 vlevcenter01 checkproc: checkproc: Empty pid file /var/run/slapd/slapd.pid for /usr/lib/openldap/slapd
It looks like it can't create the pid files for the services because there is no disk space.

 

We already have 60GB of vmdks allocated to this VM though we do have space on our datastore to add more. But I'm concerned that the vCenter Appliance will just grow and grow.

 

1) Is there any scheduled maintenance that runs on the vCenter Appliance to keep disk usage under control? This is what I would expect from an enterprise product, I'm very surprised to see such a problem happen.

 

2) Where should I start looking to clear some disk space so we can get the vCenter service back up and running?

I'd like to find a longer term solution to this otherwise we might have to just keep adding vmdks until our datastore runs out of space.

 

Cheers, B

VCenter start fails after demoting Domain Controller

$
0
0

Hi.

 

Instead of hijacking other one's thread having the same problem I decided to start a new thread, so sorry for double posting.

 

After promoting a new DC and demoting the old one we have the problem that VCenter 5.1a no longer starts.

 

Taking a look at the imsTrace.log file of SSOServer we see the following line:

 

Caused by: javax.resource.spi.ResourceAdapterInternalException: Unable to create managed connection olddc.ourdomain.com:3268

 

As we can see SSO still tries to contact the old dc now beeing a simple member server instead of the new one - the question is why?

 

We checked health of AD by running DCDIAG and BPA both not seeing any problems. Additionally we checked DNS by hand to ensure that no SRV or any other records are present which reference the old DC. Also all other AD dependent services like Exchange, SharePoint, DFS run without issue and do not indicate any problems.

 

We also found the krb5.conf file of SSO which still references the old DC by the following entry:

 

[realms]
OURDOMAIN.COM = {
    kdc = olddc.ourdomain.com
    default_domain = OURDOMAIN.COM
}

 

However changing that entry does not solve the problem because after a short period this entry is replaced automagically by ??? - that's the question.

 

Mybe someon else has some ideas what to check next.

 

Cheers.

Need to Disable SSL V3 - How can I disable it? Is it required?

$
0
0
The SSL protocol 3.0 design error, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attacks (POODLE) Additional information: (CVE-2014-3566)An unauthorised user who can take a man-in-the-middle (MitM) position can exploit this vulnerability and gain access to encrypted communication between a client and server.It is recommended to disable SSLv3 support to avoid this vulnerability.
Viewing all 18256 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>