Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Notifications
Login / Register
Community
Community
Notifications
close
  • Forums
  • Knowledge Center
  • Events & Webinars
  • Ideas
  • Blogs
Help
Help
  • Explore Community
  • Get Started
  • Ask the Community
  • How-To & Best Practices
  • Contact Support
Login / Register
Sustainability
Sustainability

Troubleshooting

How to troubleshoot and solve issues configuring the EcoStruxure IT Gateway

Search in

Improve your search experience:

  • Exact phrase → Use quotes " " (e.g., "error 404")
  • Wildcard → Use * for partial words (e.g., build*, *tion)
  • AND / OR → Combine keywords (e.g., login AND error, login OR sign‑in)
  • Keep it short → Use 2–3 relevant words , not full sentences
  • Filters → Narrow results by section (Knowledge Base, Users, Products)
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • Home
  • Schneider Electric Community
  • EcoStruxure IT Help Center
  • EcoStruxure IT Help Center Categories
  • Gateway
  • Troubleshooting
Options
  • My Knowledge Base Contributions
  • Subscribe
  • Bookmark
  • Invite a Friend
Invite a Co-worker
Send a co-worker an invite to the portal.Just enter their email address and we'll connect them to register. After joining, they will belong to the same company.
You have entered an invalid email address. Please re-enter the email address.
This co-worker has already been invited to the Exchange portal. Please invite another co-worker.
Please enter email address
Send Invite Cancel
Invitation Sent
Your invitation was sent.Thanks for sharing Exchange with your co-worker.
Send New Invite Close

Related Forums

  • EcoStruxure IT Forum

  • APC UPS Data Center & Enterprise Solutions Forum

Previous Next

Invite a Colleague

Found this content useful? Share it with a Colleague!

Invite a Colleague Invite

EcoStruxure IT Support

Submit a support request for additional assistance with EcoStruxure IT software.

Request Support

Troubleshooting

Sort by:
Date
  • Date
  • Views
  • Likes
  • Comments
  • Helpfulness
Options
  • Subscribe
  • Bookmark
  • Invite a Friend
  • « Previous
    • 1
    • 2
  • Next »

Gateway appliance network problems due to bad image

Issue Some Gateway Appliances were shipped with bad ISO images. The networking functionality does not work properly on affected units.    Symptoms A system plugged into LAN 2 is unable to receive a DHCP address  A system plugged into LAN 2 with a statically assigned IP is unable to reach Webmin  The appliance does not receive an IP address when connected on LAN1  Affected Units Affected units were assembled in or prior to November 2019.  The assembled date is found on the package label.   appliance_assembly_date_360016634397.png   What To Do Contact Customer Support for assistance with this issue.      
View full article
Picard EcoStruxureIT
‎2020-12-18 02:10 AM

709 Views

Gateway Device Communication Alert

When the Gateway is unable to keep up with the polling interval for a device, a Device Communication Alert warning alarm is generated. The alarm message is <device name> is responding slowly to polling. The Device Communication Alert alarm is generated after five consecutive polls exceed the polling interval. The alarm clears after five consecutive polls complete within the polling interval. You can do one or more of the following: Reduce the number of devices the Gateway is polling at 1 minute (Gateway 1.13 and newer). Reduce the number of devices the Gateway is polling. Add more CPU and memory to the Gateway. Investigate network latency issues, or put the Gateway on the same local area network (LAN) as the device.  
View full article
Picard EcoStruxureIT
‎2021-10-08 05:39 AM

2305 Views

Galaxy UPS is offline after updating the Gateway

  Some Galaxy UPSs report serial numbers that are not unique, such as XXXXXXXXXX or 0123456789. These serial numbers are unsupported in EcoStruxure IT Gateway version 1.9.0 and newer. If you discovered a Galaxy device that reports these generic serial numbers, the Galaxy device will show as offline after the Gateway is updated to version 1.9.0 or newer, and a new Galaxy device will be added with a unique identifier. You can delete the offline Galaxy devices from the device list.
View full article
Picard EcoStruxureIT
‎2020-12-01 03:29 AM

903 Views

Device serial numbers and unique identifiers

The EcoStruxure IT Gateway must uniquely identify devices to support data analytics and sensor history. The Gateway attempts to use the device's serial number as the unique identifier whenever possible, since IP addresses change, devices are removed and re-added to a network, or a device is connected to different Gateways.  In some cases, the device serial number must be set manually. Device serial number is missing or invalid In most cases, if the serial number is missing or empty, or it matches a list of invalid values like1234567890 or N/A, the Gateway attempts to use the MAC address for SNMP or the IP Address + server ID + port for Modbus. This not perfect for this situation, but it is the best alternative. If the Gateway fails to find a unique identifier, the device discover fails and is reported the Gateway's discovery log. Devices have the same unique identifier If two devices have the same unique identifier, usually one device will be discovered, and then when the second is discovered, the first will be removed and replaced by the second since it appears to be the same device. In some cases, depending on the timing, both devices could be discovered, and then will lose connectivity when the Gateway is updated to the next version.  Manually set the serial number on a device You might need to set the serial number on a device if a unique identifier cannot be not found. Consult the documentation or the device's manufacturer for how to do this if necessary. If you can update the serial number manually, it's most likely done through the device's own user interface. It might also be possible to set it using SNMP or Modbus. Contact customer support if you need assistance. You may need to supply the SNMP MIB or Modbus map to determine the address of the serial number.    
View full article
Picard EcoStruxureIT
‎2020-10-16 03:38 AM

3389 Views

Device is offline after replacement or RMA

  When you replace a device and reuse the IP address and device configuration credentials from the old device, the new device will show as offline in the Gateway. Delete the offline device from the Gateway device list, and then manually rediscover the new device. How to replace a device in EcoStruxure IT Gateway
View full article
Picard EcoStruxureIT
‎2020-12-01 06:57 AM

1500 Views

Cannot discover Redfish devices in Gateway

Support for unsafe ciphers was removed as part of a security update in EcoStruxure IT Gateway version 1.8.0. Devices using the Redfish protocol must now support 2048 bit certificates.  Symptom Devices that do not meet this requirement do not discover in Gateway 1.8.0 and newer. There is no indication of a certificate error when you run a new discovery. When you update your Gateway from a previous version, Redfish devices are listed as offline. Resolution Install a new certificate on the Redfish device that supports 2048 bit server certificates.
View full article
Picard EcoStruxureIT
‎2020-03-13 07:02 AM

1408 Views

Cannot discover NetBotz devices in Gateway

Support for unsafe ciphers was removed as part of a security update in EcoStruxure IT Gateway version 1.8.0. NetBotz 4.x devices must now support 2048 bit certificates.  Symptom Devices that do not meet this requirement do not discover in Gateway 1.8.0 and newer. There is no indication of a certificate error when you run a new discovery. When you update your Gateway from a previous version, NetBotz devices are listed as offline. Resolution Install a new 2048 bit certificate on the NetBotz device. Self-signed automatically generated SSL certificates use 2048-bit encryption as of NetBotz version 4.5.4.
View full article
Picard EcoStruxureIT
‎2021-07-15 03:38 AM

2087 Views

How to replace the self-signed SSL certificate in EcoStruxure IT Gateway

  These instructions apply to EcoStruxure IT Gateway 2.0 and newer.   For older versions of the Gateway, the installation directory file path is:  C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\gateway\conf...   Contact support for information about Gateway versions older than 1.16.     IMPORTANT: An imported SSL certificate signed by a trusted certificate authority or a CA certificate imported to the keystore will not persist through an EcoStruxure IT Gateway update. You must import the certificate again after you update your Gateway software.   Windows   These command examples are formatted for use in the Windows command prompt. Using PowerShell requires using single quotes instead of the double quotes displayed below.   EcoStruxure IT Gateway stores the user interface SSL certificates in two Java keystore files in the C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\conf\keystore\ directory:   dcos.keystore (PrivateKeyEntry) dcos.truststore (trustedCertEntry)   Create a new keystore for the trusted SSL certificate Stop the EcoStruxureITGateway-x.x.x.x service. Open File Explorer and navigate to:  C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\conf\keystore\  Rename the existing dcos.keystore and dcos.truststore  example: dcos.keystoreDefault Open a command prompt and change the directory to C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\conf\keystore Type the following command: "C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\jre\bin\keytool.exe" -genkey -alias dcos -keyalg RSA -keystore dcos.keystore -keysize 2048 You will first be prompted to enter a new password for the dcos.keystore you just created. Note: Write down or remember your password, you will need it in a later step.  You will then be asked to enter the following information:  Note: The following values may need to match values present on the certificate signing authority (CA). Some are required by the CA, and others may be optional depending on the CA configuration. The first value (CN) must match the hostname or FQDN (Fully Qualified Domain Name) of the server where EcoStruxure IT Gateway is installed (CN) Common Name (OU) Organizational Unit (O) Organization (L) City or Locality (ST) State or Province  (C) A two letter country code Verify that the file dcos.keystore now exists in C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\conf\keystore\  Edit the application-gateway-prod.yml file; set the key-store-password to the password you created in step 6 above. Note: If your password uses any special characters you will want to use single quotes in the application-gateway-prod.yml file   Create a certificate signing request (CSR) and new SSL certificate signed by a trusted CA Open a command prompt and change the directory to C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\conf\keystore and enter the following: "C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\jre\bin\keytool.exe" -certreq -alias dcos -keystore dcos.keystore -file newGWcert.csr This will create the newGWcert.csr in the same directory Provide the certificate signing request (CSR) to your certificate signing authority (CA). This could be a CA run by your company, or it might need to be sent to a third-party Certificate Authority. You will receive a new signed certificate and the root certificate from your CA. Note: You will need both the new signed certificate and root certificate for later steps.   Import the Root certificate and Web Server SSL certificate to the EcoStruxure IT Gateway keystore Copy the root CA certificate (we will call this rootca.crt) and newGWcert.crt to the server where EcoStruxure IT Gateway is installed. Note: Root and Web Server SSL certificates may end in .crt or .cer Open a command prompt and change the directory to C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\conf\keystore Import the root CA certificate by typing the following command (this will create a new dcos.truststore and import the root certificate in that trust store): “C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\jre\bin\keytool.exe" -importCert -trustcacerts -alias root -keyalg RSA -file rootca.crt -keystore dcos.truststore You will first be prompted to enter a new password for the dcos.truststore you just created. Note: Write down or remember your password, you will need it in a later step.  You will be asked whether or not to trust this certificate.  Type "yes" if you trust the certificate and hit Enter. Verify that the file dcos.truststore now exists in C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\conf\keystore\  Edit the application-gateway-prod.yml file; set the trust-store-password to the password you created in step 4 above. Note: If your password uses any special characters you will want to use single quotes in the application-gateway-prod.yml file Import the root CA certificate into the dcos.keystore by typing the following command: "C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\jre\bin\keytool.exe" -importCert -trustcacerts -alias root -file rootca.crt -keystore dcos.keystore Import the Web Server SSL certificate to the dcos.keystore by typing the following command:  "C:\Program Files\EcoStruxureITGateway\<current Gateway install version>\jre\bin\keytool.exe" -importCert -trustcacerts -alias dcos -file newGWcert.crt -keystore dcos.keystore Make sure the root CA certificate is imported to the internet browser on all the computers/browsers that will be used to access the Gateway user interface. Start the EcoStruxureITGateway-x.x.x.x service. EcoStruxure IT Gateway will now use the new signed certificate. No SSL Certificate security warning will be displayed by the browser when the Gateway user interface is launched.     Linux   EcoStruxure IT Gateway stores the user interface SSL certificates in two Java keystore files in the /opt/EcoStruxureITGateway/<current Gateway install version>/conf/keystore directory:   dcos.keystore (PrivateKeyEntry) dcos.truststore (trustedCertEntry)   Note: All commands must be run as sudo   Create a new keystore for the trusted SSL certificate SSH into the Linux server and stop the EcoStruxureITGateway-x.x.x.x service. sudo systemctl stop EcoStruxureITGateway-x.x.x.x.service  Change directory to the following:  /opt/EcoStruxureITGateway/<current Gateway install version>/conf/keystore  Rename the existing dcos.keystore and dcos.truststore  example: dcos.keystoreDefault From the same directory type the following command: sudo '/opt/EcoStruxureITGateway/<current Gateway install version>/jre/bin/keytool' -genkey -alias dcos -keyalg RSA -keystore dcos.keystore -keysize 2048 You will first be prompted to enter a new password for the dcos.keystore you just created. Note: Write down or remember your password, you will need it in a later step.  You will then be asked to enter the following information: Note: The following values may need to match values present on the certificate signing authority (CA). Some are required by the CA, and others may be optional depending on the CA configuration. The first value (CN) must match the hostname or FQDN (Fully Qualified Domain Name) of the server where EcoStruxure IT Gateway is installed  (CN) Common Name (OU) Organizational Unit (O) Organization (L) City or Locality (ST) State or Province  (C) A two letter country code Verify that the file dcos.keystore now exists in /opt/EcoStruxureITGateway/<current Gateway install version>/conf/keystore/ Edit the application-gateway-prod.yml file; set the key-store-password to the password you created in step 6 above. Note: If your password uses any special characters you will want to use single quotes in the application-gateway-prod.yml file   Create a certificate signing request (CSR) and new SSL certificate signed by a trusted CA SSH into the Linux server and change the directory to /opt/EcoStruxureITGateway/<current Gateway install version>/conf/keystore and enter the following: sudo '/opt/EcoStruxureITGateway/<current Gateway install version>/jre/bin/keytool' -certreq -alias dcos -keystore dcos.keystore -file newGWcert.csr This will create the newGWcert.csr in the same directory Provide the certificate signing request (CSR) to your certificate signing authority (CA). This could be a CA run by your company, or it might need to be sent to a third-party Certificate Authority. You will receive a new signed certificate and the root certificate from your CA. Note: You will need both the new signed certificate and root certificate for later steps.   Import the Root certificate and Web Server SSL certificate to the EcoStruxure IT Gateway keystore Copy the root CA certificate (we will call this rootca.crt) and newGWcert.crt to the server where EcoStruxure IT Gateway is installed. Note: Root and Web Server SSL certificates may end in .crt or .cer SSH into the Linux server and change directory to /opt/EcoStruxureITGateway/<current Gateway install version>/conf/keystore Import the root CA certificate by typing the following command (this will create a new dcos.truststore and import the root certificate in that trust store): sudo '/opt/EcoStruxureITGateway/<current Gateway install version>/jre/bin/keytool' -importCert -trustcacerts -alias root -keyalg RSA -file rootca.crt -keystore dcos.truststore You will first be prompted to enter a new password for the dcos.truststore you just created. Note: Write down or remember your password, you will need it in a later step.  You will be asked whether or not to trust this certificate.  Type "yes" if you trust the certificate and hit Enter. Verify that the file dcos.truststore now exists in /opt/EcoStruxureITGateway/<current Gateway install version>/conf/keystore Edit the application-gateway-prod.yml file; set the trust-store-password to the password you created in step 4 above. Note: If your password uses any special characters you will want to use single quotes in the application-gateway-prod.yml file Import the root CA certificate into the dcos.keystore by typing the following command: sudo ‘/opt/EcoStruxureITGateway/<current Gateway install version>/jre/bin/keytool’ -importCert -trustcacerts -alias root -file rootca.crt -keystore dcos.keystore Import the Web Server SSL certificate to the dcos.keystore by typing the following command:  sudo ‘/opt/EcoStruxureITGateway/<current Gateway install version>/jre/bin/keytool’ -importCert -trustcacerts -alias dcos -file newGWcert.crt -keystore dcos.keystore Make sure the root CA certificate is imported to the internet browser on all the computers/browsers that will be used to access the Gateway user interface. Start the EcoStruxureITGateway-x.x.x.x service. sudo systemctl start  EcoStruxureITGateway-x.x.x.x.service EcoStruxure IT Gateway will now use the new signed certificate. No SSL Certificate security warning will be displayed by the browser when the Gateway user interface is launched.
View full article
Picard EcoStruxureIT
‎2022-07-13 05:38 AM

Last Updated: Shuttle Bay rich.pinegar Shuttle Bay ‎2025-06-17 07:30 AM

10002 Views
  • « Previous
    • 1
    • 2
  • Next »
Didn't find what you are looking for? Ask our Experts
To The Top!

Forums

  • APC UPS Data Center Backup Solutions
  • EcoStruxure IT
  • EcoStruxure Geo SCADA Expert
  • Metering & Power Quality
  • Schneider Electric Wiser

Knowledge Center

Events & webinars

Ideas

Blogs

Get Started

  • Ask the Community
  • Community Guidelines
  • Community User Guide
  • How-To & Best Practice
  • Experts Leaderboard
  • Contact Support
Brand-Logo
Subscribing is a smart move!
You can subscribe to this board after you log in or create your free account.
Forum-Icon

Create your free account or log in to subscribe to the board - and gain access to more than 10,000+ support articles along with insights from experts and peers.

Register today for FREE

Register Now

Already have an account? Login

Terms & Conditions Privacy Notice Change your Cookie Settings © 2025 Schneider Electric

Welcome!

Welcome to your new personalized space.

of

Explore