Skip to main content

 Re-trust between Aria Automation and IDM failed

https://knowledge.broadcom.com/external/article?articleNumber=388670

Products

VMware Aria Suite

Issue/Introduction

When running the Re-Trust with Identity Manager task against Aria Automation, you get this error:

Error Code: LCMVRAVACONFIG590062
Failed to check VMware Identity Manager root certificate on VMware Aria Automation. Check VMware Aria Suite Lifecycle logs for more details

Environment

Aria Automation 8.x (vRA 8.x) 
Aria Suite Lifecycle 8.x (LCM 8.x)

Cause

Root password is expired on Aria Automation nodes

Resolution

Update the password in the appliances and add the new password to the Aria Lifecycle Locker: 

  1. Log into the Aria Automation Appliance(s) and change the password when prompted. 
  2. Create a new Locker Password in Aria Lifecycle under Locker > Passwords > Add
  3. After the new password is created in the Locker, you can sync the password by retrying the failed Re-Trust task and select the new Password entry.
         Note: The task will fail for each node and will need to be retried with the new password selected for each. Once it succeeds, the password will be synced in Lifecycle Manager. 

Alternatively, if you do not wish to retry the failed task but wish to sync the new Aria Automation root password to Lifecycle Manager, you can sync the password in Lifecycle manager by creating the Password entry in the Locker for the new root password and then Changing the password for each node. 

  1. Go to Lifecycle Operations > Environments > Your Automation Environment (View Details) > VMware Aria Automation Nodes > Change Node Password
  2. Select the Current Password (the one configured before changing)
  3. Select the new password (the one that was set via SSH when prompted)
  4. Submit
  5. Repeat for the remaining nodes if applicable. 

Comments

Popular posts from this blog

  Issue with Aria Automation Custom form Multi Value Picker and Data Grid https://knowledge.broadcom.com/external/article?articleNumber=345960 Products VMware Aria Suite Issue/Introduction Symptoms: Getting  error " Expected Type String but was Object ", w hen trying to use Complex Types in MultiValue Picker on the Aria for Automation Custom Form. Environment VMware vRealize Automation 8.x Cause This issue has been identified where the problem appears when a single column Multi Value Picker or Data Grid is used. Resolution This is a known issue. There is a workaround.  Workaround: As a workaround, try adding one empty column in the Multivalue picker without filling the options. So we can add one more column without filling the value which will be hidden(there is a button in the designer page that will hide the column). This way the end user will receive the same view.  

57 Tips Every Admin Should Know

Active Directory 1. To quickly list all the groups in your domain, with members, run this command: dsquery group -limit 0 | dsget group -members –expand 2. To find all users whose accounts are set to have a non-expiring password, run this command: dsquery * domainroot -filter “(&(objectcategory=person)(objectclass=user)(lockoutTime=*))” -limit 0 3. To list all the FSMO role holders in your forest, run this command: netdom query fsmo 4. To refresh group policy settings, run this command: gpupdate 5. To check Active Directory replication on a domain controller, run this command: repadmin /replsummary 6. To force replication from a domain controller without having to go through to Active Directory Sites and Services, run this command: repadmin /syncall 7. To see what server authenticated you (or if you logged on with cached credentials) you can run either of these commands: set l echo %logonserver% 8. To see what account you are logged on as, run this command: ...
  The Guardrails of Automation VMware Cloud Foundation (VCF) 9.0 has redefined private cloud automation. With full-stack automation powered by Ansible and orchestrated through vRealize Orchestrator (vRO), and version-controlled deployments driven by GitOps and CI/CD pipelines, teams can build infrastructure faster than ever. But automation without guardrails is a recipe for risk Enter RBAC and policy enforcement. This third and final installment in our automation series focuses on how to secure and govern multi-tenant environments in VCF 9.0 with role-based access control (RBAC) and layered identity management. VCF’s IAM Foundation VCF 9.x integrates tightly with enterprise identity providers, enabling organizations to define and assign roles using existing Active Directory (AD) groups. With its persona-based access model, administrators can enforce strict boundaries across compute, storage, and networking resources: Personas : Global Admin, Tenant Admin, Contributor, Viewer Projec...