VxRail:vCenter 无法使用其 FQDN 重新添加节点
摘要: vCenter 无法使用节点的完全限定域名 (FQDN) 重新添加节点。
本文适用于
本文不适用于
本文并非针对某种特定的产品。
本文并非包含所有产品版本。
症状
节点已从 7.0.x 升级到 8.0.x。节点完成重新启动后,vCenter 无法再次连接到节点。
vCenter 可以通过端口 443 和 22 访问节点。
用户尝试在节点上重新生成证书,但仍然失败。
在 6.7 U3
Vpxd.log上扫描主机以进行升级时,请参阅 Broadcom 文章“VMware vSphere Update Manager 出现未知错误”:
A general system error occurred: Unable to get CSR from host xxx.xxx.com

vCenter 可以通过端口 443 和 22 访问节点。
用户尝试在节点上重新生成证书,但仍然失败。
在 6.7 U3
Vpxd.log上扫描主机以进行升级时,请参阅 Broadcom 文章“VMware vSphere Update Manager 出现未知错误”:
2024-08-07T11:52:05.390Z info vpxd[250707] [Originator@6876 sub=vpxLro opID=lzjnobzy-1382-auto-12g-h5:70000638-d4] [VpxLRO] -- BEGIN lro-8542 -- datacenter-3 -- vim.Datacenter.queryConnectionInfoViaSpec -- 5221a2b0-37ba-501f-8a0a-96bb396d9578(52d9c116-18b2-4cc7-49a5-696a0a04ed45) 2024-08-07T11:52:05.696Z warning vpxd[252175] [Originator@6876 sub=IO.Connection opID=lzjnobzy-1382-auto-12g-h5:70000638-d4] Failed to SSL handshake; SSL(<io_obj p:0x00007fc0a92ff050, h:64, <TCP 'x.x.x.x : 59262'>, <TCP 'x.x.x.x : 443'>>), e: 104(Connection reset by peer), duration: 204msec 2024-08-07T11:52:05.696Z warning vpxd[252175] [Originator@6876 sub=HttpConnectionPool-000001 opID=lzjnobzy-1382-auto-12g-h5:70000638-d4] Failed to get pooled connection; <cs p:00007fc0d4858120, TCP:xxx.xxx.com:443 [xxx.xxx.com]>, SSL(<io_obj p:0x00007fc0a92ff050, h:64, <TCP 'x.x.x.x : 59262'>, <TCP 'x.x.x.x : 443'>>), duration: 305msec, N7Vmacore15SystemExceptionE(Connection reset by peer: The connection is terminated by the remote end with a reset packet. Usually, this is a sign of a network problem, timeout, or service overload.)
原因
防火墙设备位于 vCenter 和 ESXi 主机之间。防火墙正在阻止 SSL 应用程序。
解决方案
让用户联系其网络或安全团队检查防火墙策略设置。
如果相关流量被阻止,他们应该会在防火墙管理页面上看到相关事件。
如果相关流量被阻止,他们应该会在防火墙管理页面上看到相关事件。
其他信息
如果您遇到此类情况,还可以在 vCenter 和 ESXi 上执行数据包捕获。
文章属性
文章编号: 000227682
文章类型: Solution
上次修改时间: 14 9月 2026
版本: 3
从其他戴尔用户那里查找问题的答案
支持服务
检查您的设备是否在支持服务涵盖的范围内。