Certificate Replacement failed with Error Code : 4294967295
search cancel

Certificate Replacement failed with Error Code : 4294967295

book

Article ID: 326445

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

Replacing machine SSL cert via Certificate Manager fails with error code: 4294967295

You are going to regenerate Root Certificate and all other certificates using VMCA
Continue operation : Option[Y/N] ? : y
Status : 35% Completed [Replacing Machine SSL Cert...]
Using config file : /var/tmp/vmware/MACHINE_SSL_CERT.cfg
Status : Failed
Error Code : 4294967295
Error Message : Operation failed with error = -1 (4294967295)

Status : 0% Completed [Operation failed, performing automatic rollback]


certificate-manager.log
2020-06-10T15:11:16.958Z ERROR certificate-manager {
    "resolution": null,
    "detail": [
        {
            "args": [
                "Using config file : /var/tmp/vmware/MACHINE_SSL_CERT.cfg\nStatus : Failed\nError Code : 4294967295\nError Message : Operation failed w
ith error = -1 (4294967295)\n"
            ],
            "id": "install.ciscommon.command.errinvoke",
            "localized": "An error occurred while invoking external command : 'Using config file : /var/tmp/vmware/MACHINE_SSL_CERT.cfg\nStatus : Failed\nError Code : 4294967295\nError Message : Operation failed with error = -1 (4294967295)\n'",
            "translatable": "An error occurred while invoking external command : '%(0)s'"
        },
        "Error in generating cert for store MACHINE_SSL_CERT"
    ],
    "componentKey": null,
    "problemId": null
}
2020-06-10T15:11:16.958Z INFO certificate-manager Performing rollback of Root Cert...

Environment

VMware vCenter Server Appliance 7.0
VMware vCenter Server Appliance 6.7.x
VMware vCenter Server Appliance 6.5.x

Cause

Corrupted CFG or files with wrong content under /var/tmp/vmware/

Resolution

  1. Take snapshot of the vCenter
  2. Move all the CFG files from :/var/tmp/vmware/ to a different location 
  3. Replace the certificates again