Peer not authenticated error in vCloud Director

Some of my colleagues and I have been presenting a vCloud training session today, and one of the students got the error “Peer not Authenticated” when deploying a vApp.

Peer Not Authenticated

To diagnose the problem, first we need to turn on debugging in vCloud Director.  We do this by following the steps below:

  1. Select System
  2. Click the Administration Button
  3. Select General
  4. Enable the checkbox next to “Display Debug Information”Enable Debug checkbox

 

Peer not Authenticated debug information

Going back and looking at the error we see a lot more information.

Debug error information deep dive

Now looking at this error you can see that it is an issue with SSL.

This error can be resolved by disabling the checking of vCenter and vShield certificates.  To do this follow the steps below:

  1. Select System
  2. Click the Administration Button
  3. Select General
  4. Scroll down until you see CertificatesShow check boxes SSL vCenter vShield Manager
  5. Remove the ticks from the checkboxes for “Verify vCenter and vSphere SSO certificates” and “Verify vShield Manager certficates”remove checkbox vcenter certs
  6. Click Apply

Now if you retry the task everything will work as expected.

,

2 Responses to Peer not authenticated error in vCloud Director

  1. Adrian Roberts May 14, 2013 at 12:51 pm #

    Hi Dave,

    With my security hat on, in a production environment these options would be recommended to be enabled to increase security between the connections as per the security hardeing guide: http://www.vmware.com/uk/support/support-resources/hardening-guides.html

    I’d probably start by looking at the certificates, have they expired? Is the peer servers date/time correct? i.e. not before the certificate start date.

    • David Hill May 14, 2013 at 1:28 pm #

      I completely agree that in a production environment you would not do this, however for a lab environment, or a training class this is an easy and quick way to resolve this issue.

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Copyright David Hill

Powered by WordPress. Designed by Woo Themes

%d bloggers like this: