KMIP server unreachable showing TLS error
Applies to
- ONTAP 9
- External Key Manager
- Thales Key Manager
- CyperTrust
Issue
- External key manager is suddenly unreachable
::*> security key-manager external show-status
Node Vserver Primary Key Server Status
---- ------- ------------------------------------------------- ------------
node-01 vs1 1.1.1.1:8888 not-responding
Status Details: IO
node-02 vs2 1.1.1.2:8888 not-responding
Status Details: IO
2 entries were displayed
- While logs point to a TLS issue:
Fri Jan 24 2025 11:45:52 +00:00 [kern_kmip2_client:info:9028] [Jan 24 11:45:52]: 0x80a005000: 0: ERR: kmip2::tables::kmip_keyserver_status: [setKeyServerStatus]:54: Received an exception in setting up TLS connection: IO (10)
- However kmip server becomes available again without any manual intervention