FabricPool connection using SAN names to AWS bucket fails with Cannot verify the certificate" error
Applies to
- ONTAP
- FabricPool
- Amazon Simple Storage Service (Amazon S3)
- Subject Alternative Names (SAN)
Issue
Configure the object store for Fabricpool fails with Cannot verify the certificate given by the object store server
error:
::*> storage aggregate object-store config create -vserver OnpremCluster -object-store-name objectstore01 -provider-type AWS_S3 -port 443 -server bucket.vpce-081a8b49b8b373173-3cxyvswb.s3.us-east-1.vpce.amazonaws.com -container-name aws-s3-fabricpool-01 -access-key <> -secret-password <> -is-ssl-enabled true -ipspace Default
Error: command failed: Cannot verify availability of the object store from node node01. Reason: Cannot verify the certificate given by the object store server. It is possible that the certificate has not been installed on the cluster. Use the 'security certificate install -type server-ca' command to install it..