Replace certificate fails at initialize cluster on a vRA scaled out setup
search cancel

Replace certificate fails at initialize cluster on a vRA scaled out setup

book

Article ID: 324927

calendar_today

Updated On:

Products

VMware Aria Suite

Issue/Introduction

This article provides steps to re-mediate replace certificate flow on a scaled-out vRA 8.0.1 setup.

Symptoms:
Replace certificate fails at initialize cluster on a vRA scaled out setup with the error:

vRA intialize cluster failed after certificate install

Environment

VMware vRealize Automation 8.x
VMware vRealize Suite Lifecycle Manager 8.x

Cause

This issue is observed when load balancer is configured with SSL passthrough enabled and the LB certificate has been configured in vRA as part of vRA scale out setup.

Resolution

To resolve this issue:
  1. Login to vRA VA primary node console.
  2. Check if vRA load balancer certificate is configured using the command:
vracli certificate load-balancer --list
  1. If the load balancer is configured with SSL passthrough enabled and certificate is present on vRA as per the output of step 2 , then delete the load-balancer certificate in vRA using the command:
 vracli certificate load-balancer --delete
  1. Retry the failed replace certificate request in LCM.