Veritas NetBackup™ Status Codes Reference Guide
- NetBackup status codes
- NetBackup status codes
- NetBackup KMS status codes
- NetBackup status codes
- Media Manager status codes
- Media Manager status codes
- Media Manager status codes
- Device configuration status codes
- Device configuration status codes
- Device configuration status codes
- Device management status codes
- Device management status codes
- Device management status codes
- Robotic status codes
- Robotic status codes
- Robotic status codes
- Robotic error codes
- Robotic error codes
- Robotic error codes
- Security services status codes
- Security services status codes
- Security services status codes
- NetBackup alert notification status codes
NetBackup status code: 7627
Explanation: The NetBackup process was not able to complete initialization of the SSL environment.
For VMware, the error might occur when the feature VIRTUALIZATION_HOSTS_SECURE_CONNECT_ENABLED is enabled and the virtualization server's CA certificates are not added in ECA configured trust store or ECA trust store not configured correctly.
Recommended Action: Examine the details of the error message to determine why the SSL handshake failed. Possible causes of this error may be as follows:
A missing, expired, or revoked host certificate. In case of the NetBackup CA, verify that the hosts have a valid host ID-based certificate. In case of an external CA, verify that the external certificate and keystore paths are correctly set in the external certificate configuration file. If the host is configured to use an encrypted keystore, ensure that the correct passphrase for the certificate's private key is specified for the ECA_KEY_PASSPHRASEFILE configuration option.
Excessive clock skew on the host. See the information about clock skew in the NetBackup Security and Encryption Guide.
If you use the NetBackup SECURE_PROXY_CIPHER_LIST configuration option, the cipher string entries may be invalid. Verify that the cipher strings are permitted OpenSSL strings.
For VMware:
When the VIRTUALIZATION_HOSTS_SECURE_CONNECT_ENABLED option is enabled, you must verify the placement of the certificates and CRLs. Verify whether the VMware virtualization server's (vCenter, ESX, ESXi) certificates and CRLs are added to the respective ECA configured trust store and the CRL path.
Ensure that the certificates and the CRL files are in the correct format and the trust store file and the CRL files are not corrupted.
Only PEM certificate format for file-based trust store & Windows trust store are supported for virtualization servers. P7b or DER format file based trust store is not supported. When this feature is enabled, the certificate ECA store should either be Windows certificate store or file based PEM format store.
If the problem persists, contact Veritas Technical Support.
Click here to view technical notes and other information on the Veritas Technical Support website about this status code.