External Key Manager in unknown state with SSL peer validation errors
Applies to
- ONTAP 9
- External Key Management (EKM)
- Key Management Interoperability Protocol (KMIP)
Issue
External key managers report "Unknown" status with the SSL_PEER_VALIDATION errors.
Example:
::*> security key-manager external show-status Node Vserver Key Server Status ---- ------- ------------------------------------------- --------------- cluster-1a SVM1 x.x.x.x:5696 unknown Status Details: SSL_PEER_VALIDATION