我們的品牌

Impact-Company-Logo-English Black-01-177x54

歡迎造訪施耐德電機全球網站

歡迎訪問我們的網站
		
我们今天能为您提供什么帮助?
CA certificate must be imported to the PowerChute Network Shutdown keystore to connect to VxRail Manager from version 7.0.320 when “Accept Untrusted SSL Certificates” is disabled

Issue:
Certificate Authority (CA) certificate must be imported to the PowerChute Network Shutdown keystore to connect to VxRail Manager from version 7.0.320 when “Accept Untrusted SSL Certificates” is disabled.

Products:
PowerChute Network Shutdown v4.5

Environment:
PowerChute Network Shutdown configured with Dell VxRail support, “Accept Untrusted SSL Certificates” is disabled in VxRail settings.

Cause:
From version 7.0.320, VxRail Manager no longer uses a self-signed certificate. A CA now signs the VxRail Manager server certificate, and the CA certificate must be imported to the PowerChute-keystore if the “Accept Untrusted SSL Certificates” option in the Web UI is disabled. This is to prevent a connection error when the NMC attempts to send the cluster shutdown API call.

Solution:

Step 1: Retrieve the CA certificate:

  1. Open VxRail Manager in a web browser: https://<vxrail_manager_ip_address>/rest/vxm/api-doc.html
  2. View the certificate details and click the Certification Path tab.
  3. Click the CA certificate and click View Certificate.
  4. Click the Details tab and click Copy to File…
  5. Save the certificate as a Base-64 Encoded .cer file.



Step 2: Transfer the CA certificate file to the PowerChute virtual appliance via SCP: scp vxrail_ca.cer "root@virtual_appliance_ip_address:vxrail_ca.cer" or using a tool such as WinSCP.


Step 3: Before you can import the certificate, you must change the PowerChute-keystore password:

  1. Open the PowerChute configuration file (pcnsconfig.ini), found at opt/APC/PowerChute/group1
  2. In the section [NetworkManagementCard], add the line "PowerChuteKeystorePassword = <new_password>".
  3. Save the pcnsconfig.ini file.
  4. Re-start the PowerChute service: systemctl stop PowerChute / systemctl start PowerChute


Step 4: Navigate to the opt/APC/PowerChute/group1 directory in the command line and import the CA certificate to the PowerChute-keystore using the command: ../jre_x64/bin/keytool -importcert -alias vxrail -keystore PowerChute-keystore -storepass <keystore password> -file <vxrail_manager_.cer_file>
NOTE: The alias must be set as “vxrail” or the PowerChute-keystore will not accept the certificate.

Step 5: Re-start the PowerChute service.

施耐德電機Taiwan

探索更多
系列:
探索更多
系列:
  • 產品文檔
  • 軟體下載
  • 產品選型工具
  • 產品替代和替換
  • 幫助和聯絡中心
  • 尋找我們的辦公室
  • 取得報價
  • 施耐德電機社群
  • 人才招募
  • 公司簡介
  • 舉報不當行為
  • 無障礙
  • 新聞中心
  • 投資者
  • 專業洞察
  • 台灣施耐德電機學院
  • 綠色影響力落差調查
  • Schneider Go Green 2025
  • 隱私政策
  • Cookie通告
  • 使用條款
  • Change your cookie settings