XCP-ng
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Attempting to add new host fail on xoa and on server, worked on xcp-ng center

    Scheduled Pinned Locked Moved Management
    24 Posts 6 Posters 2.3k Views 5 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • olivierlambertO Online
      olivierlambert Vates 🪐 Co-Founder CEO
      last edited by

      I'm not sure who to ping exactly 🤔 Maybe @Team-XAPI-Network with some experience on the cert issue?

      psafontP 1 Reply Last reply Reply Quote 0
      • psafontP Online
        psafont Vates 🪐 XAPI & Network Team @olivierlambert
        last edited by psafont

        I see at least on a couple of instances that the pool join is being forced. Please don't do this unless you understand the checks being ignored.

        What's the result of a pool join without the force option?

        Do both hosts have tls verification enabled?
        If not, run xe pool-enable-tls-verification. This will set up the certificates for pool communication correctly for the hosts in that pool and turn on TLS verification for pool communication.
        If yes, run xe host-list --minimal | xargs -I _ xe host-param-get uuid=_ param-name=name-label | xargs -I _ xe host-refresh-server-certificate host=_. This will reset the certificates for all the hosts in the pool.

        Try running the normal join command after doing these steps, and report whether it went well, or report the error.

        J 1 Reply Last reply Reply Quote 1
        • J Offline
          Jonathon @psafont
          last edited by Jonathon

          @psafont Sorry was swamped with other things. As listed above I get the same error, forced or not, from xcp-ng center, xcp-ng host, or xoa.

          1fdda333-0842-4281-ae69-e6c886ec1542-image.png
          tls verification has always been off, and in the past we have not had issue with adding new host to pool.

          I have taken no other actions since my last posting.

          J 1 Reply Last reply Reply Quote 0
          • J Offline
            Jonathon @Jonathon
            last edited by

            xe pool-enable-tls-verification Was exactly what I needed, thanks! Worked after that.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post