• View Communities
    • Citrix Developer Network
      The place for unfiltered straight talk on Citrix products. Blogs, code downloads, best practices, APIs, and more can all be found here.
    • Citrix Ready Community Verified
      Does it work with Citrix? Application compatibility questions are a thing of the past with the new Citrix Community Verified site.
    • Blogs
      Learn the latest from the Citrix employees who are building application delivery infrastructure technologies.
    • Blogosphere
      The Citrix Blogosphere is a window into the thousands of conversations taking place about Citrix and Application Delivery.
  •  Sign In
The Citrix Blog
Personal Blog
Jonathan Eugenio
Related Tags
posted by Jonathan Eugenio

** Please note that this blog post assumes that you have already reviewed and utilized the "Using VMWare Infrastructure 3 with Dynamic Desktop Controller" found at http://support.citrix.com/article/CTX116928 **

...

Recently, while at a customer during a XenDesktop 3.0 configuration we found that communication to VirtualCenter's SDK via https would not complete it's handshake.  Further research found that the Self Signed Certificate that the VIC/VC uses is created at the time of the Virtual Center install.  During the VirtualCenter install, the self signed certificate is created for a term of 3 years.  In this case, the certificate for this VirtualCenter had expired on 3/30/2009.  If you are attempting to connect with the XenDesktop Setup Wizard, or your XenDesktop DDC is attempting to communicate with VC and you receive a "SSL Handshake Failed" please check your certificate.

The certificate can be found at c:\Documents and Settings\All Users\Application Data\VMWare\VMware VirtualCenter\SSL.  You will find three files in this directory, rui.crt, rui.key, rui.pfx.  Double click on rui.crt to establish whether the certificate had indeed expired.  The VMWare document on how to resolve this issue can be found at: 

http://www.vmware.com/pdf/vi_vcserver_certificates.pdf

The Readers Digest Condensed version is to run a Repair on your VirtualCenter which will create a new self signed certificate for three years.  You should now be able to communicate into the VirtualCenter with XenDesktop as need be.

...

Special thanks should goto Stephen Odanga of FCB for assisting me with finding this information.

Labels

grp-all-exclude grp-all-exclude Delete
lang-eng lang-eng Delete
nonspecific nonspecific Delete
Enter labels to add to this page:
Please wait 
Looking for a label? Just start typing.

Anonymous says:

You are not logged in. Any changes you make will be marked as anonymous. You may want to Log In if you already have an account. You can also Sign Up for a new account.