vSphere Client/vSphere Web Client fails to connect to vCenter Server and reports the error: Could not create SSL/TLS secure channel
search cancel

vSphere Client/vSphere Web Client fails to connect to vCenter Server and reports the error: Could not create SSL/TLS secure channel

book

Article ID: 327935

calendar_today

Updated On:

Products

VMware

Issue/Introduction

Symptoms:
  • The vSphere Client or vSphere Web Client fails to connect to vCenter Server.
  • You see the error:

    vSphere Client could not connect to vCenter_Server_Name. An unknown connection error occurred. (The request failed due to an SSL error. (The request was aborted: Could not create SSL/TLS secure channel.))

  • In the vpxd.log file, you see entries similar to:

    warning 'Libs'] SSLSystemVerifyDERCert: Failed to create a Win32 certificate context for the peer sertificate. LastError = -2146885630
    warning 'Libs'] SSLSystemVerifyDERCert: Failed to create a Win32 certificate context for the peer sertificate. LastError = -2146885630
    warning 'Libs'] SSLSystemVerifyDERCert: Failed to create a Win32 certificate context for the peer sertificate. LastError = -2146885630


    Notes:


Cause

This issue occurs if the SSL certificate was generated/installed on any of these dates:
  • 1st January
  • 1st March
  • 1st May
  • 1st July
  • 1st October
  • 1st December

Resolution

This issue is resolved in vCenter Server 5.1.0a and later, available at VMware Downloads. For more information about this version, see the VMware vCenter Server 5.1.0a Release Notes.
To work around the issue when you are unable to upgrade, regenerate the SSL certificate for a date that is not in any of these 7 days.


Additional Information


Location of vCenter Server log files
Implementing CA signed SSL certificates with vSphere 5.x
vSphere Client/vSphere Web Client 无法连接到 vCenter Server 并报告错误:无法创建 SSL/TLS 安全通道
vSphere Client/vSphere Web Client が vCenter Server への接続に失敗し、次のエラーが表示される:SSL/TLS のセキュリティで保護されたチャネルを作成できませんでした