Date and Time Mismatch
Date and time mismatch is the most common issue with registration. If the certificate is not valid, regenerate the default keyring certificate from Cisco UCS Central:
Before you begin
To ensure that the date and time between Cisco UCS Central and Cisco UCS domains are in sync, ensure that you have a valid NTP configuration with Cisco UCS Central and the Cisco UCS domains.
Procedure
Command or Action | Purpose | |
---|---|---|
Step 1 |
UCSC#connect policy-mgr |
Enters policy manager mode. |
Step 2 |
UCSC(policy-mgr)#scope org |
|
Step 3 |
UCSC(policy-mgr) /org#scope device-profile |
|
Step 4 |
UCSC(policy-mgr) /org/device-profile#scope security |
|
Step 5 |
UCSC(policy-mgr) /org/device-profile/security # scope keyring default |
Enters key ring security mode for the default key ring. |
Step 6 |
UCSC(policy-mgr) /org/device-profile/security/keyring # set regenerate yes |
Regenerates the default key ring. |
Step 7 |
UCSC(policy-mgr) /org/device-profile/security/keyring* # commit-buffer |
Commits the transaction to the system configuration. |
Updating Shared Secret
If you have issues after correcting the configuration, you may need to update the shared secret in Cisco UCS Manager.
Procedure
Command or Action | Purpose | |
---|---|---|
Step 1 |
UCSM#scope system |
Enters system mode. |
Step 2 |
UCSM /system #scope control-ep policy |
|
Step 3 |
UCSM /system/control-ep #set shared-secret |
|
Step 4 |
UCSM system/control-ep #commit-buffer |
|
What to do next
Important |
Before calling Cisco TAC, make sure that:
|