Submit a ticketCall us

Announcing NCM 7.7
With NCM 7.7, you can examine the rules that make up an access control list for a Cisco ASA device. Then you can apply filters to display only rules that meet the specified criteria, order the rules by line number or by the hit count, and much more.
See new features and improvements.

Home > Success Center > Network Performance Monitor (NPM) > When deploying agents using an MST file, the agent does not appear in the Agent Management page or you receive a certificate error

When deploying agents using an MST file, the agent does not appear in the Agent Management page or you receive a certificate error

Updated Aug 24, 2016

Overview

 

When mass-deploying agents using an MST file, you may receive a certificate error or the agents do not register with the Orion server.

When the agents do not register, the agents do not appear in the Agent Management page.

Environment

  • NPM 11.5 or later
  • Agent version 1.5 or later

 

Cause 

This is caused by mismatched security certificates.

 

Resolution

Back up your database - This resolution deletes entries from your Orion database. Back up your database before performing any resolution steps.

  1. Back up your database.
  2. Log on to the computer running your primary Orion server.
  3. Open the Orion Database Manager.
  4. Execute the following query:
    DELETE FROM [AgentManagement_Pkcs12Certificates] WHERE [CertificateType] = 2
  5. Open the personal certificate store for the local computer.
    1. Click Start > Run.
    2. Enter mmc.
    3. Click File > Add/Remove Snap-in.
    4. Add Certificates.
    5. Select Computer account when prompted.
    6. Select Local computer.
    7. Click Finish.
    8. Click Ok.
    9. Click Certificates (Local Computer) > Personal > Certificates.
  6. Delete the SolarWinds Agent Provision certificate.
  7. Restart the SolarWinds Orion Module Engine service.
  8. Once the service has restarted, open the Orion Database Manager.
  9. Ensure that the [CertificateType] = 2 record is recreated in the AgentManagement_Pkcs12Certificates table. It can take several minutes for the service to restart completely and recreate the record.
  10. Ensure that the SolarWinds Agent Provision certificate is recreated in the personal certificate store and uses sha.
    1. Double-click the certificate.
    2. Navigate to the Certification Path tab.
    3. Double-click on the SolarWinds-Orion certificate
    4. Navigate to Details.
    5. The Signature Algorithm should use sha.

 

Download a new MST file from the Orion server and deploy it.

 

If you have additional polling engines, perform the following steps on each of them after applying the changes to the primary polling engine and before downloading and deploying the new MST file.

  1. Log on to the computer running your additional polling engine
  2. Open the personal certificate store for the local computer.
    1. Click Start > Run.
    2. Enter mmc.
    3. Click File > Add/Remove Snap-in.
    4. Add Certificates.
    5. Select Computer account when prompted.
    6. Select Local computer.
    7. Click Finish.
    8. Click Ok.
    9. Click Certificates (Local Computer) > Personal > Certificates.
  3. Delete the SolarWinds Agent Provision certificate.
  4. Restart the SolarWinds Orion Module Engine service.

 

 

 

Last modified
16:29, 26 Aug 2016

Tags

Classifications

Public