(cas:72) Google Analyticator was unable to authenticate you with Google using the Auth Token you pasted into the input box on the previous step.

This could mean either you pasted the token wrong, or the time/date on your server is wrong, or an SSL issue preventing Google from Authenticating.

Try Deauthorizing & Resetting Google Analyticator.

Tech Info 400:Error fetching OAuth2 access token, message: 'invalid_grant'
Unique
Visitors
Powered By Google Analytics
Comments on: Updating CA SSL Certificates in vSphere 5.1 http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/ all things Nutanix, VMware, cloud and virtualizing business critical applications Fri, 26 Jul 2013 10:04:48 +0000 hourly 1 https://wordpress.org/?v=6.7.6 By: @vcdxnz001 http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-21639 Fri, 26 Jul 2013 10:04:48 +0000 http://longwhiteclouds.com/?p=1509#comment-21639 In reply to Jonathan.

Hi Jonathan, To answer your questions, 1. CN change is fine. So you can have the same OU on multiple servers because the CN is different and therefore the DN is then unique. 2. Doesn't apply unless you're trying to apply certs to SRM. That advice is only for SRM. 3. There are example CSR's that include the OU attribute. You can choose to just copy those or choose your own. 4. The name needs to be rui. If you want to automate the process check out the article I wrote about vCert Manager, which is being developed by one of VMware's partners. Also check out VMware's cert tool.

]]>
By: Jonathan http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-21409 Thu, 25 Jul 2013 04:39:25 +0000 http://longwhiteclouds.com/?p=1509#comment-21409 There were 4 points that I thought deserved clarification and used the feedback link as well as a SR to encourage on KB 2037432.

1. They indicate that the DN must be unique via OU matching the component function. They do not however list what to do if you have multiple servers running the same function (i.e. multiple vCenters). In this case, would the different CN be enough or do the OU need to not only be the function but vCenter environment.

2. They do not have a warning that the real hostname FQDN must be last in the SAN list. http://virtuallyhyper.com/2012/08/srm-5-x-custom-

3. In KB 2015499, they reference 2037432 but to not provide a suggestion on what a proper OU would be. This is also related to the first question.

4. Is the name rui.csr/key/cer required or just conventional? When dealing with a large number of certs, it makes more sense to prefix the host shortname just to be certain you don't get your rui* mixed up accidentally.

]]>
By: » VMware vCenter Certificate Automation Tool 1.0 vs vCert Manager Long White Virtual Clouds http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-10687 Sun, 07 Apr 2013 09:42:51 +0000 http://longwhiteclouds.com/?p=1509#comment-10687 […] improve the manual process documented in the earlier KB’s slightly, which had 136 steps (See Updating CA SSL Certificates in vSphere 5.1) it’s not really what I’d call real automation of the process. It doesn’t […]

]]>
By: Hugh http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-5016 Thu, 10 Jan 2013 10:34:59 +0000 http://longwhiteclouds.com/?p=1509#comment-5016 Hi Micheal,

We have considered it, but because we pay a lot for Enterprise edition licenses, VMware should provide proper documentation or make it simpler to upgrade to 5.1 and also prepare their technical staff to be able to support the more complex installs, such as the SSO servers in HA config with SSL certs. Many in the VMware community think VMware has really dropped the ball on this one.

]]>
By: @vcdxnz001 http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-5009 Thu, 10 Jan 2013 07:48:46 +0000 http://longwhiteclouds.com/?p=1509#comment-5009 In reply to Hugh.

Hi Hugh, Not sure about the guys in Support, but I'd suggest VMware PSO has likely done this and potentially some of the VMware Partners. I haven't tried the update to 5.1.0b in that scenario myself yet. Have you considered a brief T&M engagement with VMware PSO?

]]>
By: Hugh http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-4999 Wed, 09 Jan 2013 16:46:39 +0000 http://longwhiteclouds.com/?p=1509#comment-4999 Has anyone successfully upgraded to vSphere 5.1.0.b using SSO in HA mode with SSL certs and a VIP on a load balancer?

I've engaged VMware technical support and not one person on their floor of technicians has done an upgrade to 5.1 using SSO in HA configuration with a load balancer and SSL certificates. VMware's documentation isn't great for the SSL part when using a load balancer with SSO in HA mode….. Its ok if you do the single vCenter, SSO, Inv all in one install for small environments…but not if you want redundancy.

I'd be interested if anyone in VMware support has successfully got this working?

]]>
By: vSphere 5.1 Generally Available – Important Upgrade Considerations « Long White Virtual Clouds http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-4881 Sun, 06 Jan 2013 18:57:50 +0000 http://longwhiteclouds.com/?p=1509#comment-4881 […] into KB articles. We have tested the procedures. I would recommend that you use these articles – Updating CA SSL Certificates in vSphere 5.1 and Updating CA SSL Certificates in vSphere 5.1 vCenter Virtual Appliance. I expect VMware will […]

]]>
By: Derek Seaman http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-3668 Tue, 30 Oct 2012 13:24:38 +0000 http://longwhiteclouds.com/?p=1509#comment-3668 In reply to @vcdxnz001.

Yup, been pretty busy but will be tweaking the articles a little bit more. Thanks for the shout out!

]]>
By: VMware issues SSO patch, new SSL documentation - The Virtualization Room http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-3655 Mon, 29 Oct 2012 15:18:52 +0000 http://longwhiteclouds.com/?p=1509#comment-3655 […] director of IT Solutions 2000 Ltd., a VMware consultancy based in Auckland, New Zealand, noted in a blog post that there’s still a ‘gotcha’ with SSL certificates in a certain […]

]]>
By: Technology Short Take #26 - blog.scottlowe.org - The weblog of an IT pro specializing in virtualization, storage, and servers http://longwhiteclouds.com/2012/10/27/updating-ca-ssl-certificates-in-vsphere-5-1/comment-page-1/#comment-3649 Mon, 29 Oct 2012 13:01:27 +0000 http://longwhiteclouds.com/?p=1509#comment-3649 […] Webster has a great write-up on replacing CA SSL certificates in vSphere 5.1. Thanks for all the effort pulling this together, […]

]]>