Академический Документы
Профессиональный Документы
Культура Документы
Troubleshooting Workshop
Lab Manual
ESXi 6.5 and vCenter Server 6.5
www.vmware.com/education
CONTENTS
Lab 1 Using the Command Line .. .. .... .. ..... . ................ . .. .. ..... . .... . . .... 1
Lab 2 Adding vSphere Management Assistant to Active Directory ........ .. .... .. ... . . . .... 7
Lab 3 Searching Log Files ....... . .... . . . .. .. . . .... . . .. ..... . . . . .. .. . . .. . . .. . . . .. .. 13
Lab 4 Searching Log Files . . ...... . ..... . ........... . ... ... ....... .. ... . .. .... . ... . 17
Lab 5 Troubleshooting Network Problems .. ..... . ....... . ........ . .. . ...... . .... . . ... 23
Lab 6 Troubleshooting Storage Problems ... . . .. . .. . . . .. . . . . .. . . .. .... . . . . . . .... . . . ... 27
Lab 7 Troubleshooting Cluster Problems . .. ..... . .. . .. . ..... . ....... . ...... . ..... . ... 31
Lab 8 Troubleshooting Virtual Machine Problems . . . . . .. ..... . .. . ..... .. .... . ...... . ... 35
Lab 9 Managing the PostgreSQL Database . . ..... . ..... . ..... . .... . ......... . ..... . ... 39
Lab 10 Troubleshooting vCenter Server and ESXi Host Problems ... . .. ... .... .. .. .... . ... . 4 7
Lab 11 (Optional) Working with Certificates .. .... .. . . .. . . .. . .. . . . . . . . . .... .... . . . . . .. 51
Answer Key . ........... . ..... . . . ..... . ................... . ... .. ...... . . ... ...... 67
iii
iv VMware vSphere: Troubleshooting Workshop
Lab 1 Using the Command Line
1
Task 2: Validate the vSphere Licenses
You log in to the VMware vCenter Server® system and determine whether the VMware vSphere®
licenses are valid. If the licenses have expired, you add valid licenses to the vCenter Server system
and VMware ESXi™ hosts.
1. Open the Internet Explorer web browser.
2. Select the vSphere Web Client favorite to connect to VMware vCenter® Server Appliance™
at https://sa-vcsa-01. vclass. local/vsphere-cl ient.
3. On the VMware vCenter Single Sign-on page, enter the vCenter Server user name
adrninistrator@vsphere. local and the user password VMwarel ! and click Login.
IMPORTANT
The steps in this task are specific to the OneCloud lab environment. If you are using a OneCloud lab
environment, you can perform this task. If you are not using a OneCloud environment, you must
skip this task. Your instructor can tell you how to access the ESXi host's DCUI in your lab
environment.
1. From the first RDC session where you logged in to the virtual data center lab environment,
open the Internet Explorer web browser and enter the vCloud Director URL.
2. Use the vCloud Director user name and password to log in to vCloud Director.
3. On the Home page, find your classroom vApp and click the Open link.
4. In the center pane, click the Virtual Machines tab.
5. Right-click the SA-ESXi-01 host and select Popout Console.
6. If a window warns that a newer version of the Client Integration Plug-In is available, click
Cancel.
7. Click in the console window and press F2 to log in to the host with the ESXi host login name
(root) and the user password VMware 1! .
8. Use the up and down arrow keys to view the menu selections.
9. Navigate to the Troubleshooting Options menu and press Enter.
10. Select Enable ESXi Shell and press Enter to activate it.
11. Select Enable SSH and press Enter to activate it.
12. Press Esc until you are logged out of the DCUI.
13. Press Ctrl+Alt to release the insertion point from the ESXi console window.
14. Minimize or close the console window, and return to the first student desktop RDC session.
15. Right-click the SA-ESXi-02 host and select Popout Console.
IMPORTANT
You must not change any settings.
7. Close the SA-ESXi-01 tab.
7
Task 1: Log In to vSphere Management Assistant
You start an MTPuTTY session to log in to VMware vSphere® Management Assistant.
1. On your student desktop system, double-click the MTPuTTY icon.
2. In the Servers pane on the left, double-click SA-VMA-01.
3. If a PuTTY Security Alert dialog box appears, click Yes to accept and cache the server 's
host key.
You are automatically logged in as the vi-admin user.
The vSphere Management Assistant Command Prompt window opens.
IH•iii
All commands are case-sensitive.
1. Run the sudo domainj oin- c li join command to join the vSphere Management Assistant
instance to the vclass.local AD domain.
sudo domainjoin-cli join vc l ass. l ocal administrator
2. When prompted for the vSphere Management Assistant user password, enter VMwarel ! .
3. When prompted for the domain administrator password, enter VMwarel ! .
For help with the sudo command, you can enter sudo -h.
IMPORTANT
If a warning appears recommending that you reboot the system, you must not reboot the system.
6. If prompted for the vSphere Management Assistant user's password, enter VMwarel ! .
7. Leave the vSphere Management Assistant window open for the next task.
2. Enter VMwarel ! .
3. When prompted with a security warning message, enter yes to continue.
4. Add your first ESXi host as a target server.
vifp addserver sa-esxi-01.vclass.local --authpolicy fpauth --username root
5. Enter VMwarel ! .
6. If you are prompted with a security warning message, enter yes to continue.
7. Add your second ESXi host as a target server.
vifp addserver sa-esxi-02.vclass.local --authpolicy fpauth --username root
8. Enter VMwarel ! .
9. If you are prompted with a security warning message, enter yes to continue.
10. Verify that all the target servers, which include your vCenter Server system and both of your
ESXi hosts, are added properly.
vifp lis tservers
For example:
/ usr /l i b/vmware - vcli/apps/general/c redstore_admin.pl add --server
sa-esxi-01.vclass.local --thumbprint
OE:D8:85 :D9 : 32 : 9B :O O:D8 : 94 :01:CC: 76:99 :B5:76:F9 : 9B : 19 :99 :4 3
For example:
/usr/lib/vmware - vcli/apps/general/credstore admin.p l add --s erver
sa-esxi-02.vclass.local --thumbprint
OE:D8:85:D9:32:9B:OO:D8:94 : 01:CC : 76:99 : B5:76:F9 : 9B : 19 : 99:43
14. After running the command, verify that the name of the ESXi host is displayed as part of the
command prompt.
For example:
vi -admin @vma : ~> vifptarget -s sa-esxi-01.vclass.local
vi -admin @vma : ~ [sa-es xi - 01.vclass.loca l] >
For help with vSphere Management Assistant commands, you can use the --help option:
• esxc li --help
• vifp --help
• vi f ptarget --help
2. At the command prompt, enter vicfg-vmknic -1 to verify the IP address and subnet mask of
the VMkernel interfaces on the host.
3. Enter vicfg-route -1 to verify the default gateway address for the VMkernel interfaces on
the host.
If the command returns has snapshot () = O, the virtual machine has no snapshots. If the
command returns has snapshot () = 1, the virtual machine has at least one snapshot.
3. Enter vmware-cmd pa th_ to_ the_. vmx_ fil.e gets ta te to view the state information
about the virtual machine.
For example, to view the state of the linux-a-01 virtual machine, you can use the following
command:
vmware- cmd /vmfs /vo lume s/54 f7fff 9- 757c9064 - 548b- 005056011403/ li nux- a -
01/linux - a - 01 . vmx ge tstat e
4. Enter vmware-cmd path_ to_ the_. vmx_fil.e getuptime to view the uptime for the
virtual machine.
5. Close the MTPuTTY session.
2. On the vSphere Web Client Home page, point to the Home icon and select Hosts and Clusters.
3. In the Navigator pane on the left, select sa-vcsa-01.vclass.local.
4. In the middle pane, click the Configure tab.
5. Click General.
6. Click Edit.
13
7. In the Edit vCenter Server Settings dialog box, click Logging settings.
8. Select verbose from the Logging options drop-down menu.
9. Click OK to close the Edit vCenter Server Settings dialog box.
10. In the Navigator pane, expand the vCenter Server inventory.
11. Right-click sa-esxi-01.vclass.local and select Add Networking.
12. On the Select connection type page, click Virtual Machine Port Group for a Standard
Switch and click Next.
13. On the Select Target Device page, click New standard switch and click Next
14. On the Create a Standard Switch page, click Next.
15. If you see a warning that no physical network adapters for the switch exist, click OK.
16. On the Connection Settings page, enter your_name_yortgroup in the Network label text box
and click Next.
For example, if your name is Thomas, create a port group named Thomas_portgroup.
17. On the Ready to Complete page, click Finish.
18. Click the Networks tab.
19. Verify that the network that you created appears in the list.
17
Task 1: Log In to vRealize Log Insight
You log in to VMware vRealize® Log Insight™ and make changes to the vSphere environment.
1. Open the Internet Explorer web browser.
2. Open a new tab if vSphere Web Client is running.
3. Select the vRealize Loglnsight favorite .
4. Click the Continue to this website (not recommended) link.
5. Enter the user name admin and the user password VMwarel ! and click Login.
6. Click the icon to the right of the admin user (three horizontal bars) in the upper right and select
Administration.
7. Click vSphere under Integration in the left pane.
The vRealize Log Insight appliance should be integrated with vCenter Server Appliance (sa-
vcsa-01. vclass.local ).
8. Click TEST CONNECTION.
9. If the Test successful message does not appear, ask your instructor for help.
2017- IB - 29Ti8 : 39':1 2. 0l 2.Z s a- a sxi - 01 . vclas s .loca l Ypxa1: verbose vpx.a [60A5870] [Or iginator@5875 su~-vpxa MvtHos t op
Hos t th<i ngOOll configtt;l nage!"_ nH..-orlkSy.s t eiii: neb>Ol"kI n fo. po!"tgtc:ru:p[ ".k ey- vim. host _PO!"t G!"oup- Danid z_pol"t gl"ou p• l
OOUJOO Cl\lent_typQ h~tname appneime lllTIW_QSXJ_seVl'!rlty vmw_ oplc:I
4. Point to the space to the left of the time stamp on the event that records the creation of your port
group.
A settings icon (gear) should appear.
5. Click the settings icon and select View Event in Context.
You should see the events that occurred before and after your event.
6. Close the window.
hoomame
hostname: s~l-02.vciassJocal
100
72
[ portgroup
[ portgroup
X hostname v contains
~~~~~~~-
v sa-es~ I
Sil-eSXl- 02
+ADD FILH R x; CLEA R A LL FILT ERS
sa-esxl-01
Events Field T11ble Event Types Event Trends
2017-03-10 Wl7 - 03 - 10129:91: 2S.. 992Z sca -~xi - 92 . vcfa s:s .loc.al Ho:std: i nf,
12:01:28.935 5-d:- 26 f 8 Ill W ld 9d 26 de: portgroup dlvportgroup- 36
6. Click the search icon to the right of the time-range drop-down menu.
The chart shows port group events related to sa-esxi-01 .
7. Select Line from the Chart Type drop-down menu.
vmw_user
Ad'cd Filter: x
l[B9709o&] [Orig inat or@68
Id 26 de portgroup dvpor Contains '["key-vim _~·--'
vmw_user
Does not contein '["~y-vim.lio___,
l[OS.M.876] [Orig i na,t or-@68
~d26· de portgroup dvpor
vmw_user Extract field
portg roup
20f7-03-29 2017-1'13- 29T20:29:4l.577Z sa- esxi - 0Lvclass.loca l Vpxa: verbose vpxa[A3AEB70] [0riginator@6876 sub---vpxarnvtHost
13:29".38.066 {3729) : HostCh,a nged lc:o nfigHa n.ager-. net workSyst em: networkinfo.por-tgroup["key- viaL hos t. F'or-tGroup- Tnoaias_por-tgr-oup'
source event_type h0&tname appname \llllW~everny vmw_opld
20f7-03-29 2017-1'13- 29T20:29: 42.. 576Z sa- esxi - l'!Lvclass.loca l Vpxa: verbose vpxa[A3AEB71'1] [0riginator@6876 sul:i=halservic:es <
13:29:38.066 pro;p0r-ties c:nangM [ net..-orkin,fo. vswi t e h["key- villL host. Vi rtualS...i t c:h- vSwi t c:hl •], net..'()r'lc!nfo. portgroup["key- villl .
villl . host. Vi rtualSwi tc:h-vS>..i t eh0" ]. nui:nf'ortsAva ila ble, net..-orkinfo.pro><y'.i>Nitc:h["Ovs:Po.-tse t - 0"] . numPortsAva ila ble:
sotice event_typl;l hos.mame appname \llllW_~everny vmw_opld
IMPORTANT
After the break script completes, do not run another break script until you complete tasks 2 through
4 for each network problem. You must run the scripts one at a time.
1. Double-click the PowerCLI icon on the student desktop system to start a PowerCLI session.
2. In the PowerCLI window, enter cd \materials\scripts\mod4.
23
3. Enter the name of a break script.
For example, you enter . \break-5-1 . psl to run the first break script.
In the Difficulty column, I = least difficult and 3 = most difficult to resolve.
2 .\break- 5 - 2.psl 2
3 . \break- 5-3.psl 3
4 . \break- 5 - 4.psl 2
5 .\break- 5 - 5.psl 3
6 . \break- 5 - 6 .psl 3
7 . \break- 5 - 7.psl 3
4. Wait until the You are ready to start the lab message appears.
5. Leave the PowerCLI window open for the next problem and go to task 2.
•U·Hi
The first time you open a virtual machine console, you are prompted to click either Web
Console or VMware Remote Console. You must click Web Console.
2 . \break- 5 - 2 .psl The linux-a-04, linux-a-05, linux-a-09, and linux-a-10 virtual machines
are no longer accessible over the network. You cannot open a remote
console to them. The CONTENT-LIBRARY-STORAGE, NFSOl, and
Shared datastores are also marked as inactive or inaccessible.
4 . \break- 5 - 4 .psl Users on the linux-a-01 and linux-a-02 virtual machines can no longer
communicate with each other. The IP address for linux-a-01 is
172.20.11.200. The IP address for linux-a-02 is 172.20.11.201.
5 . \break-5-5 .psl Users on the following virtual machines have reported total network
communication failures: linux-a-01 , linux-a-02, linux-a-03, and linux-
a-04.
6 . \break- 5 - 6 .psl A vSphere administrator cannot move the linux-a-02 virtual machine
to the Production-A port group.
7 . \break- 5 - 7 .psl A vSphere administrator reports seeing the message The vSphere
distributed switch configuration on some hosts
differed from that in vCenter Server. The administrator
sees the message in the Networking> LabVDS >Summary pane
of vSphere Web Client.
After you fix the problem, the error message disappears within a few
minutes.
2. Go to task 3.
27
Task 1: Run a Break Script
You use PowerCLI to run a break script to damage storage in the lab environment.
IMPORTANT
After the break script completes, do not run another break script until you complete tasks 2 through
4 for each storage problem. You must run the scripts one at a time.
1. Double-click the PowerCLI icon on the student desktop system to start a PowerCLI session.
2. In the PowerCLI window, enter cd \materials\scripts\mod5 .
3. Enter the name of a break script.
For example, you enter . \break-6-1 . psl to run the first break script.
In the Difficulty column, 1 =least difficult and 3 =most difficult to resolve.
2 .\break- 6- 2.ps l 2
3 .\break- 6- 3.ps l 3
4 .\break- 6- 4.psl 3
5 . \break- 6-5.psl 3
6 . \break- 6- 6 . psl 3
7 . \break- 6- 7 . ps l 2
8 . \break- 6- 8 . ps l 2
9 . \break- 6- 9 . ps l 2
10 .\break- 6- 10.psl 3
4. Wait until the You are ready to start the lab message appears.
5. Leave the PowerCLI window open for the next problem and go to task 2.
6 . \ break- 6 - 6 .ps l End users report extremely poor performance on several virtual
machines. All virtual machines that were reported are stored on
the Shared datastore.
7 . \ bre ak- 6 - 7 .ps l A vSphere administrator reports that storage performance is very
slow on the Shared datastore. The vSphere administrator did not
specify which ESXi host had the problem.
10 . \ break- 6 -1 0 .psl A vSphere administrator reports that some virtual machines stored
on the Shared datastore are now marked inaccessible. The vSphere
administrator did not specify which ESXi host or virtual machines
had the problem.
2. Go to task 3.
31
Task 1: Run a Break Script
You use PowerCLI to run a break script to damage storage in the lab environment.
IMPORTANT
After the break script completes, do not run another break script until you complete tasks 2 through
4 for each cluster problem. You must run the scripts one at a time.
1. Double-click the PowerCLI icon on the student desktop system to start a PowerCLI session.
2. In the PowerCLI window, enter cd \materials\scripts\mod6 .
3. Enter the name of a break script.
For example, you enter . \break-7-1 . psl to run the first break script.
IMPORTANT
You must start with the first break script, . \break - 7 -1 . ps 1. The first break script creates the
cluster that is used in all other break scripts. After you run the first break script and solve that
networking problem, you can run the remaining break scripts in any order.
In the Difficulty column, 1 = least difficult and 3 =most difficult to resolve.
2 .\break- 7 - 2 . psl 2
3 .\break- 7 - 3 .psl 2
4 . \break- 7 -4 .psl 2
5 . \break- 7 - 5 . ps l 2
6 .\break- 7 - 6.psl 2
7 . \break- 7 - 7 . psl 2
8 . \break- 7 - 8 . ps l 2
9 .\break- 7 - 9.psl 2
10 . \break- 7 - 10.psl 2
4. Wait until the You are ready to start the lab message appears.
5. Leave the PowerCLI window open for the next problem and go to task 2.
5 . \break - 7- 5 . psl End users report major performance problems with various virtual
machines in the vSphere cluster.
8 . \break - 7 - 8 .psl A vSphere administrator reports that CPU use is not balanced
across hosts in the cluster.
10 . \break - 7 -1 0 .psl A vSphere administrator reports that CPU use is not balanced
across hosts in the cluster.
2. Go to task 3.
35
Task 1: Run a Break Script
You use PowerCLI to run a break script to damage virtual machines in the lab environment.
IMPORTANT
After the break script completes, do not run another break script until you complete tasks 2 through
4 for each virtual machine problem. You must run the scripts one at a time.
1. Double-click the PowerCLI icon on the student desktop system to start a PowerCLI session.
2. In the PowerCLI window, enter cd \materials\scripts\mod7 .
3. Enter the name of a break script.
For example, you enter . \break-8-1.psl to run the first break script.
In the Difficulty column, 1 =least difficult and 3 =most difficult to resolve.
2 .\break- 8-2.psl 2
4 .\break- 8-4.psl 3
6 . \ break-8-6.psl 2
7 . \ break- 8- 7 . psl 2
8 . \break- 8- 8 . psl 3
9 . \break- 8- 9 .psl 3
4. Wait until the You are ready to start the lab message appears.
5. Leave the PowerCLI window open for the next problem and go to task 2.
7 . \break- 8 - 7 . psl An end user cannot power on a virtual machine. The user did not
report which virtual machine failed to power on.
8 . \break-8- 8 .psl A vSphere administrator cannot install VMware Tools into any
virtual machine.
9 . \break- 8 - 9 .psl An end user cannot power on the linux-a-03 virtual machine.
2. Go to task 3.
39
6. Scroll back to the beginning of the output.
Your screen should look like the screenshot.
root@sa- vc:::sa - 01 [ - HI ps aux I g rep p mn.g ces
vposcgr+ 2 6a7 a .a a . 3 463576 2 492 a ? I'!a rOl 2 : 2 6 I opt / vmwa.r e/vpos tgres/ c urrenc/b i n/ postgres - D /st orage/ db / vpo s tgres
vp03tQ"c+ 2 610 a .a a .a 68280 3460 ? Ss I'!ar O l 0 : 02 postgres: l o g ge r process
v po:3 t gr+ 2 6 12 a .a 1. 6 4640 48 1343 24 ? Ss I'!ar01 0 : 56 p ostgres : c:h e c kpo i nt e r proce:39
vpo stqc+ 2 6 1 3 a .a a . 2 4 63 7 52 1 8 7 68 ? So I'Iar 0 1 0: 2 0 postgres: v r ite r proce ss
vpoBtqr+ 2 614 o.o a . 1 463752 1 5 348 ? So !'Iar Ol 2 : 0 3 postgre s : wal tn: iter proc e~s
vpo::i tgr + 2615 a . a a . a 464 2a4 6464 ? Ss I'l:ar01 1: 48 pCIBtgres : a u t ovacu"WTI leu ncher proce::i::i
vpostr;;rr+ 2 6 1 6 a . a a . a 7 1464 4888 ? So l!lar 0 1 9 : 33 p os'C-gres : stets collecto r p r oce~s
vpos t gr+ 2617 a . a a . 1 46q 7 2 0 9280 ? Ss !'IarOl a : 19 p ost.gres: bgt1orker : heelth stat u s 'tilarker
vpostgr+ 39a8 a . a 0 .1 46582 0 12788 ? Ss I'!a r0 1 0 : 5 4 p o:Jtgre s : vc V CDB 12 7 . o . o. 1 i 4 2 162 I i d l e
vposti;rr+ 39 11 a . a a .1 4 6 4 8a8 1 1692 So llac Ol O: 59 post-gre~ : vc VCDB 12 7 . 0. 0 . 1 142 16 6 ) id l ~
vpostgr+ 4 708 a . a a . 2 4 67876 2032 4 ? 93 1.la rO l O: OB post.gres : vc VCDB 127 . 0.0 .1( 42592) idl e
r o ot 5 11 4 a . 2 q. 2 204 3096 3 5 0220 ? Sl :!l'l:ar:O l ? 3 : qq I usr / java/ jre-vmvare/b i n/vmvar e - sps. l auncher - Xmx350m -XX : Comp r esse d
5 i z:e:• l 28m - X~32 56k - XX : P eral l e: lGC Thre: e.d~· 1 -Dxm l . c::o nf ig• .. I c::onf / ~p~- ~p r i ng-c::o n fi g . xml - Dpbm . conf ig• .. /conf / pbm- ~ pri ng-c onfi g . xml - D~m
. /conf/sms - spr ing- conf ig . xml - XX : +Forc:: : eTime HighRe so l ut ion - XX : +Pr int Tenur ingDistr i but ion - verbose : gc - Dcatal i na . home= /s t or a ge/ s p s/ t om
eapDumpOnOut ot Memor y Error - XX : He apDumpPath"' /var/ l o g /vmloia re/'Vl'llwar e - sps/ - XX : Erro r Fi le"' / var / l o g /vmloiare/ 'Vl'llwar e - sps/ j ava_ e r ro r %- p . log -XX :
t e. i l s - XX : +Pr i n t GCD e.te 5 t ernp9 - XX : +Pr intRe t:e r:enceGC - XX: +U3eGCLogr i l e Ro t at i on - XX : NumberOt:GC Logfi le3 "' 10 - XX: GCLog FileS i z:e= l 0 2 4K - Xlog g
/vmurar:e/vmt&Ta r:e - s ps/vmware-sps-qc:::: . l o q - D ; ava . s e c::::ur: i tv . p r:oper: t i e s = /etc::::/vmvare/ ; ava/vnn:rar:e-over:r ide -; ava . secur i t v - Di ava . ext . d i rs= / usr/ i
If you do not see these processes running, you should ask your instructor for help.
m1og_destination 'stderr'
# stderr, csvlog, syslog, and eventlog,
The I = warning command searches for the string= warning, which is in the log file
message settings part of the configuration.
Your screen should look like the screenshot.
4. Examine the end of the log file, and notice when vCenter Server and the PostgreSQL database
server stopped and started.
5. Enter exit to log out of the shell.
6. Close the MTPuTTY application.
IMPORTANT
You must not restart the PostgreSQL database server.
14. Point to the Home icon and select Hosts and Clusters.
47
Task 1: Run a Break Script
You use PowerCLI to run a break script to damage your vCenter Server configuration or ESXi host
configuration in the lab environment.
IMPORTANT
After the break script completes, do not run another break script until you complete tasks 2 through
4 for each problem. You must run the scripts one at a time.
1. Double-click the PowerCLI icon on the student desktop system to start a PowerCLI session.
2. In the PowerCLI window, enter cd \materials\scripts\mod8 .
3. Enter the name of a break script.
For example, you enter . \break-10-1 . psl to run the first break script.
In the Difficulty column, 1 = least difficult and 3 = most difficult to resolve.
10 .\break- 10-10.psl 2
4. Wait until the You are ready to start the lab message appears.
5. Leave the PowerCLI window open for the next problem and go to task 2 .
2 . \break- 10- 2 .psl A vSphere administrator cannot use SSH or the DCUI to access
an ESXi host. The administrator did not report which host had
the problem.
3 . \break- 10- 3 .psl A vSphere administrator cannot use vSphere Web Client to log in
to vCenter Server.
4 . \break- 10- 4 .psl A vSphere administrator cannot join an ESXi host to the
vclass.local domain. The administrator received a task
notification indicating that the specified domain either does not
exist or could not be contacted by the host. The administrator did
not report which host had the problem.
5 . \break- 10- 5 .psl A vSphere administrator noticed that the size of the vCenter
Server log files is rapidly expanding. The administrator is
concerned that continued expansion at this rate will eventually
crash vCenter Server Appliance.
6 . \break- 10- 6 . psl A vSphere administrator reports that the inventory in vSphere
Web Client is empty.
Standard procedure requires that this system have an extra
backup of the vCenter Server database saved in /usr I loca l /
share/vcdb. save . If all else fails, you can use this backup to
help solve the problem.
7 .\break- 10- 7.psl A Sphere administrator logged out of vSphere Web Client before
going to lunch. When the administrator returned and logged back
in, the inventory was empty.
2. Go to task 3.
51
6. In the Certificate Authority panel, click the Verify password link.
7. In the Password text box, enter the standard lab password and click OK.
Q1. How many active certificates are in the certificate store for this node?
~~~
Subject
Q5. Based on the Common name field under Subject, what is the type of this certificate?
Q7. What are the names of the solution users that have certificates (from the Subject
field)?
20. Click OK
This step is necessary for WinSCP to connect to the vCenter Server system so that you can
download the CSR to your student desktop.
2. Start the WinSCP application.
a. On the student desktop taskbar, click the WinSCP icon.
IH-111
The filename is case-sensitive and must exactly match the filename as written in order for
the script to use it.
IH-Hi
The filename is case-sensitive and must exactly match the filename as written in order for
the script to use it.
d. Close the Microsoft Active Directory Certificate Services page.
e. IfWordPad is open, close it.
4. Export the root certificate.
a. Switch to the Windows Explorer window and navigate to the c: \Ma t erials \ Downl o ad s
directory.
b. Right-click the cachain.p7b file and select Open.
The Certificate Manager Console opens.
c. In the left pane, expand the inventory tree until you see the Cert ificates folder.
d. Select the Certificates folder.
You should see two certificates: the root certificate for your domain controller and the
custom certificate for your vCenter Server Appliance instance.
The custom certificate appears as VMware. vSphere65 appears under the Certificate
Template column at the far right.
e. To export the root certificate, right-click the vclass-DC-CA root certificate and select All
Tasks > Export.
The Certificate Export wizard appears.
f. Click Next.
g. On the Export File Format page, click Base-64 encoded X.509 (.CER) and click Next.
h. On the File to Export page, click Browse.
1. Navigate to the c : \Materi a ls \ Downl oad s folder.
MU.Hi
The filename is case-sensitive and must exactly match the filename as written in order for
the script to use it.
k. Click Save.
I. On the File to Export page, click Next.
m. Click Finish.
n. Click OK.
o. Close the Certificate Manager console.
Option Action
Please provide valid custom certificate for Machine Enter machine ssl. cer.
SSL
Please provide valid custom key for Machine SSL Enter vmca_issued_key. key.
Please provide the signing certificate of the Machine Enter root-64. cer.
SSL certificate
You must wait for the process to complete. This process takes several minutes while the
services are restarted.
h. During this operation, notice the number of services that are updated.
1. Wait until the 100 % Complete [All tasks comp l eted successfully ] message
appears.
J. After the operation is 100 percent complete, press Ctrl+D.
4. Close and reopen Internet Explorer, and log back in to vSphere Web Client.
a. Close the Internet Explorer window.
b. Start Internet Explorer.
c. From the Favorites bar, select vSphere Web Clients> SA-VCSA-01.
The vSphere Web Client login page appears.
d. Log in to vSphere Web Client as administrator@vsphere.local with the standard lab
password.
Q1. What color is the background of the Internet Explorer location bar?
5. In Internet Explorer, click the Security report icon (padlock) to the right of the Location text box.