Can't deploy env with self-signed certificate

Bug #1638490 reported by Ilya Bumarskov
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Fuel NSX-T plugin
Won't Fix
High
Igor Zinovik

Bug Description

Fuel 9.1 with NSX-t plugin 1.0.0 build#76

Steps to reproduce:
   - Create env with vCenter and DVS plugin
   - Add following nodes:
         * Controller
         * Compute
   - Configure VMware vCenter Settings. Add vSphere cluster and configure Nova Compute instance on controller.
   - Uncheck checkbox 'Bypass NSX Manager certificate verification' and upload certificate.
   - Try to deploy env

Observed behaviour:
Deployment has failed. Failed task [nsx-t-reg-node-on-management-plane/2].
(/Stage[main]/Main/Nsxt_add_to_fabric[Register controller node on management plane]/ensure) SSL_connect returned=1 errno=0 state=SSLv3 read server certificate B: certificate verify failed

description: updated
Changed in fuel-plugin-nsx-t:
importance: Undecided → High
assignee: nobody → Igor Zinovik (izinovik)
milestone: none → 1.0.0
Revision history for this message
Igor Zinovik (izinovik) wrote :

Problem occurs because we create file with certificate after we are trying to add node to fabric.

We need to put certificate on disk before joining NSX fabric.

Changed in fuel-plugin-nsx-t:
status: New → Confirmed
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to fuel-plugin-nsx-t (master)

Fix proposed to branch: master
Review: https://review.openstack.org/392546

Changed in fuel-plugin-nsx-t:
status: Confirmed → In Progress
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Change abandoned on fuel-plugin-nsx-t (master)

Change abandoned by Igor Zinovik (<email address hidden>) on branch: master
Review: https://review.openstack.org/392546

Revision history for this message
Igor Zinovik (izinovik) wrote :
Changed in fuel-plugin-nsx-t:
status: In Progress → Won't Fix
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.