Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Notifications
Login / Register
Community
Community
Notifications
close
  • Forums
  • Knowledge Center
  • Events & Webinars
  • Ideas
  • Blogs
Help
Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Login / Register
Sustainability
Sustainability

We Value Your Feedback!
Could you please spare a few minutes to share your thoughts on Cloud Connected vs On-Premise Services. Your feedback can help us shape the future of services.
Learn more about the survey or Click here to Launch the survey
Schneider Electric Services Innovation Team!

PCNS won't connect to ESXi without DNS server

APC UPS Data Center & Enterprise Solutions Forum

Schneider, APC support forum to share knowledge about installation and configuration for Data Center and Business Power UPSs, Accessories, Software, Services.

cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • Home
  • Schneider Electric Community
  • APC UPS, Critical Power, Cooling and Racks
  • APC UPS Data Center & Enterprise Solutions Forum
  • PCNS won't connect to ESXi without DNS server
Options
  • Subscribe to RSS Feed
  • Mark Topic as New
  • Mark Topic as Read
  • Float this Topic for Current User
  • Bookmark
  • Subscribe
  • Mute
  • Printer Friendly Page
Invite a Co-worker
Send a co-worker an invite to the portal.Just enter their email address and we'll connect them to register. After joining, they will belong to the same company.
You have entered an invalid email address. Please re-enter the email address.
This co-worker has already been invited to the Exchange portal. Please invite another co-worker.
Please enter email address
Send Invite Cancel
Invitation Sent
Your invitation was sent.Thanks for sharing Exchange with your co-worker.
Send New Invite Close
Top Experts
User Count
BillP
Administrator BillP Administrator
5060
voidstar_apc
Janeway voidstar_apc
196
Erasmus_apc
Sisko Erasmus_apc
112
Teken
Spock Teken
110
View All

Invite a Colleague

Found this content useful? Share it with a Colleague!

Invite a Colleague Invite
Back to APC UPS Data Center & Enterprise Solutions Forum
ticketpocket
ticketpocket
Cadet

Posted: ‎2024-02-23 03:09 AM . Last Modified: ‎2024-02-23 03:12 AM

0 Likes
3
883
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2024-02-23 03:09 AM . Last Modified: ‎2024-02-23 03:12 AM

PCNS won't connect to ESXi without DNS server

Dear all,

this is what happened some days ago.
We had a planned power outage of several hours and we decided to use the occasion as another (battery-)test.
There's a server rack that is powered by a Smart UPS X and all the "native" servers have their PCNS. Everything runs fine.
Recently we added two standalone ESXi machines and both have their own PCNS running in a separate VM (VMware Virtual Appliance).
Here, too, everything looked good, dry tests in the past (unplugging the power plug of the rack and wait) ran fine.
But what we didn't had in mind:
If the network is cut to the rest of the world, we loose DNS functionality. And exactly that seems to be a problem for PCNS when it has to connect the ESXi host.
As I understand, this connection is done via https and the ESXI's certificates are checked. For this the ESXi's fqdn as written in its SSL cert must be resolvable to PCNS, I guess. Is this correct?
If this 'handshake' fails, PCNS will not tell the ESXis to shut down and, well... the UPS just powers down on empty batteries. Bad thing.

We got this error in PCNS's error.log (ESXi's hostname changed to esxi2...):

2024-02-19T07:48:31,620 ERROR Thread-78 com.vmware.vim25.ws.WSClient java.net.UnknownHostException: esxi2.example.com at java.base/java.net.AbstractPlainSocketImpl.connect(AbstractPlainSocketImpl.java:229) - Exception caught while invoking method: CurrentTime
2024-02-19T07:48:31,622 ERROR Thread-78 com.apcc.m11.components.webserver.util.virtualization.vmware.VMWareConnection - validateESXiConnection() - host: esxi2.example.com, RemoteException occurred, attempting reconnection
2024-02-19T07:48:31,622 ERROR Thread-78 com.vmware.vim25.ws.WSClient java.net.UnknownHostException: esxi2.example.com at java.base/java.net.AbstractPlainSocketImpl.connect(AbstractPlainSocketImpl.java:229) - Exception caught while invoking method: Logout
2024-02-19T07:48:31,688 ERROR pool-11-thread-1 com.vmware.vim25.ws.WSClient java.net.UnknownHostException: esxi2.example.com at java.base/java.net.AbstractPlainSocketImpl.connect(AbstractPlainSocketImpl.java:229) - Exception caught while invoking method: RetrieveServiceContent
2024-02-19T07:48:31,689 ERROR pool-11-thread-1 com.apcc.m11.components.webserver.util.virtualization.vmware.ESXiConnectionCallable - call() - failed connecting to: esxi2.example.com, RemoteException: java.rmi.RemoteException: Exception caught trying to invoke method RetrieveServiceContent; nested exception is: java.net.UnknownHostException: esxi2.example.com
2024-02-19T07:48:31,690 ERROR Thread-78 com.apcc.m11.components.webserver.util.virtualization.vmware.VMWareConnection - processConnectionFailure() - failed connecting to host: esxi2.example.com - (RemoteException) Exception caught trying to invoke method RetrieveServiceContent; nested exception is: java.net.UnknownHostException: esxi2.example.com

The corresponding entries in EventLog.txt (IP-address changed to random numbers) :

02/19/2024 07:42:50 UPS has switched to battery power. .3.5.1.5.4.1
02/19/2024 07:47:50 UPS critical event: <b>On Battery</b>. .3.4.9.9
02/19/2024 07:47:50 Shutdown sequence started on Host <b>101.43.76.13</b> in response to UPS critical event: <b>On Battery</b>. .3.4.9.9
02/19/2024 07:48:31 Cannot connect to Host. PowerChute will not be able to issue commands to the Host. .3.4.9.9

 

This is the same for PCNS v5.0.0 and a slightly older v4.4.1. The ESXi hosts are running v7.0U3c and v7.0U3o

 

The PCNS_VMware_User_Guide.pdf tells us:

DNS Configuration issues may prevent PowerChute from connecting to the host e.g. a stale
DNS record containing an invalid hostname/FQDN or IP address.
The following exception appears in the Error Log:
VI SDK invoke exception:java.net.UnkownHostException

To reproduce this (without crashing everything again) we removed the DNS server entries from the underlying linux, rebooted (to empty any caches) and re-entered the ESXi's ip and login credentials.
Result: PCNS cannot contact the ESXi host.
As soon as we put an entry for the ESXi host into /etc/hosts this works again, even without access to a DNS server.

But this can't be the final solution. Any thoughts? Something we missed or misunderstood? Why isn't everybody else running into the same problem?

PS: Another idea was to add the (public) IP-address of the ESXi host as "alternative name" into its SSL-certificate. But that's a no-go for our CA.

Cheers

  • Tags:
  • english
Reply

Link copied. Please paste this link to share this article on your social media post.

  • All forum topics
  • Previous Topic
  • Next Topic
Replies 3
BillP
Administrator BillP Administrator
Administrator

Posted: ‎2024-02-26 05:16 AM

0 Likes
2
872
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2024-02-26 05:16 AM

@ticketpocket 

 

You found the correct solution. If the domain name server is offline the domain names cannot be resolved. This will happen with any TCP connection that relies on domain name resolution. For example disconnect DNS and from any other VM attempt to ping the ESXi host via domain name. The connection will fail. Then run the ping test utilizing the ESXi host IP address. The connection will be successful.

 

To resolve the issue, add the ESXi hostname and IP address to the the etc/hosts file. 

Reply

Link copied. Please paste this link to share this article on your social media post.

ticketpocket
ticketpocket
Cadet

Posted: ‎2024-03-11 06:58 AM

In response to BillP
0 Likes
1
788
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2024-03-11 06:58 AM

Thanks, @BillP for your reply.

 

On one hand I'm glad I found the problem and also its solution. But I still can't believe this is it.

I guess most of all UPS protected systems that run ESXi hosts don't have their DNS "included". They will all fail?!
While setting up the UPS and PCNS we already had in mind to only use IP addresses to stay independend from any service outside of this room and we even made changes to the VLAN configuration as we knew that without the non-local VLAN routers some of the nets inside our rack will get disconnected from each other.
But I didn't see a warning that PCNS for VMware is useless per default in an isolated rack. Everyone should be alarmed about this, when the idea was to protect the VMs from crashing.

I know that if I want to talk to a webserver speaking https and use its IP-address instead of its hostname, I'll be warned (SSL_ERROR_BAD_CERT_DOMAIN).
But anyway I can accept this "risk" and proceed. This is how it optionally should work here, too. Either use a strict mode (check certificate/ hostname) or -especially when using IP addresses instead of hostnames- do not rely on resolving the hostname of the webserver and ignore that SSL_ERROR_BAD_CERT_DOMAIN.
As for me this could be a checkbox. That should be fine for the paranoiacs.

So, to summarize:
Either put the ESXi addresses (IPv4+IPv6) into the /etc/hosts of the PCNS's OS (and I guess it would be nice for many admins to have some "howto" for this).
Or additionally install PCNS into every VM, with all the drawbacks...

 

I understand this is a community driven forum. As there is obviously no other solution for us PCNS users, the next step for me is to open a support ticket.

 

Or are any committed PCNS developers listening here already?

 

Bye

Reply

Link copied. Please paste this link to share this article on your social media post.

BillP
Administrator BillP Administrator
Administrator

Posted: ‎2024-03-13 09:24 AM

In response to ticketpocket
0 Likes
0
776
  • Mark as New
  • Bookmark
  • Subscribe
  • Mute
  • Subscribe to RSS Feed
  • Permalink
  • Print
  • Email to a Friend
  • Report Inappropriate Content

Link copied. Please paste this link to share this article on your social media post.

Posted: ‎2024-03-13 09:24 AM

@ticketpocket 

 

We have a how to edit the hosts file. See knowledge base document FAQ000262541

https://www.se.com/us/en/faqs/FAQ000262541/

 

And a document the explains how to correct the connect error FAQ000265038.

https://www.se.com/us/en/faqs/FAQ000265038/

 

Also, we plan to implement additional check for common issues in a future release and the check will direct users to the solution. 

Reply

Link copied. Please paste this link to share this article on your social media post.

Preview Exit Preview

never-displayed

You must be signed in to add attachments

never-displayed

 
To The Top!

Forums

  • APC UPS Data Center Backup Solutions
  • EcoStruxure IT
  • EcoStruxure Geo SCADA Expert
  • Metering & Power Quality
  • Schneider Electric Wiser

Knowledge Center

Events & webinars

Ideas

Blogs

Get Started

  • Ask the Community
  • Community Guidelines
  • Community User Guide
  • How-To & Best Practice
  • Experts Leaderboard
  • Contact Support
Brand-Logo
Subscribing is a smart move!
You can subscribe to this board after you log in or create your free account.
Forum-Icon

Create your free account or log in to subscribe to the board - and gain access to more than 10,000+ support articles along with insights from experts and peers.

Register today for FREE

Register Now

Already have an account? Login

Terms & Conditions Privacy Notice Change your Cookie Settings © 2025 Schneider Electric

This is a heading

With achievable small steps, users progress and continually feel satisfaction in task accomplishment.

Usetiful Onboarding Checklist remembers the progress of every user, allowing them to take bite-sized journeys and continue where they left.

of