Once TLSv1.2 enabled not able to use uemcli from the outside of storage itself:
uemcli -d xxx -u Local/admin -p xxx /sys/security show Storage system address: xxx Storage system port: 443 HTTPS connection
Operation failed. Error code: 0x1000100 Unable to validate the specified certificate. (Error Code:0x1000100)
From storage itself it is checking cert:
08:45:57 service@unity spa:~/user# uemcli -d xxx -u Local/admin -p xxx /sys/security set -tlsMode TLSv1.1 Storage system address: xxx Storage system port: 443 HTTPS connection
Remote certificate: Issuer: CN=unity Subject: CN=unity Valid from: 2021:08:31:07:10:16 Valid to: 2024:08:30:07:10:16 Serial: xxx Id: xxx Would you like to: [1] Accept the certificate for this session [2] Reject the certificate [3] Accept and store Please input your selection (The default selection is [1]): 1 Please refer to the Security Configuration Guide for backward compatibility. This change may impact running operations (e.g. replication) and the management services will be automatically restarted for the change to take effect. Do you want to continue? yes / no: yes Remote certificate: Issuer: CN=unity Subject: CN=unity Valid from: 2021:08:31:07:10:16 Valid to: 2024:08:30:07:10:16 Serial: xxx Id: xxx Would you like to: [1] Accept the certificate for this session [2] Reject the certificate [3] Accept and store Please input your selection (The default selection is [1]): 1 Operation completed successfully.
After enabling TLSv1.1 connection from the outside is fine ok:
uemcli -d xxx -u Local/admin -p xxx /sys/security show Storage system address: xxx Storage system port: 443 HTTPS connection
1: FIPS 140 mode = disabled TLS mode = TLSv1.1 and above Restricted shell mode = enabled
DELL-Sam L
Community Manager
•
8058 Posts
•
34386 Points
645
0
Posted August 8th, 2022 09:00
Hello wyps1987,
Here is a link to a kb that maybe of assistance.
https://dell.to/3SDn1rZ