NSX v2T config migration fails while migrating Appliance certificates
search cancel

NSX v2T config migration fails while migrating Appliance certificates

book

Article ID: 321205

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • V2T config migration fails while migrating Appliance certificates.
  • When the system tries to migrate older unused SSO certificate/s, in /var/log/migration-coordinator/v2t/cm.log or translation.log , you see entries similar to:

    Config migration failed Reason: HTTP Error: 400: Invalid PEM data received for certificate.


Environment

VMware NSX-T Data Center 3.x.

VMware NSX 4.x.

Cause

This issue occurs due to unused SSO certificates present in the NSX-v database from a version prior to NSX-v 6.4.3 which are not marked system resource as SSO configuration does not clears older certificates when new certificates gets associated with the SSO. These certificates might cause issue in v2T migration.


Resolution

This is a known issue affecting VMware NSX. 

Currently there is no resolution.

If you believe you have encountered this issue, please open a support case with Broadcom Support and refer to this KB article.