HCX failed to deploy NE and reported error message "PKIX path building failed"
search cancel

HCX failed to deploy NE and reported error message "PKIX path building failed"

book

Article ID: 311832

calendar_today

Updated On:

Products

VMware HCX

Issue/Introduction

Symptoms:
HCX failed to deploy NE and reported error message below when resyncing the service mesh

Validate RemoteService Mesh failed. Interconnect Service Workflow ValidateRemoteServiceMesh failed. Error: PKIX path building failed: sun.security.provider.certpath.SunCertPathBuildingException: unable to find valid certification path to requested target.

Cause

This issue can occur if there is a change in NSX-T manager cert.

Resolution

1. Check the NSX-T manager sha256 cert fingerprint via web browser

image.png


2. Login to the Cloud HCX appliance manager > Administration > Certificate > Trusted CA Certificate. Verify the trusted NSX-T manager cert is correct.

image.png

If there is a change in NSX-T manager cert recently, re-import the newly updated NSX Manager certificate following the steps described in the doc below.

https://docs.vmware.com/en/VMware-HCX/4.6/hcx-user-guide/GUID-A5A9FBBC-30E8-4867-8205-1B95B8640D8E.html