This knowledge base article outlines the process for rotating the NSX Advanced Load Balancer (AVI) certificate and updating it on the VMware supervisor.
Avi Load balancer
vSphere Kuberenetes service
Avi portal certificate expired which can lead to failure in establishing secure communication between AKO pod running in VKS supervisor and Avi controller.
Create a new controller certificate
Assign this new controller certificate to the AVI controller
Restart AKO pod for the certificate change to be consumed by AKO pod.
kubectl get pods -A | grep -i akokubectl delete pod vmware-system-ako-ako-controller-manager-#### -n vmware-system-akokubectl get pods -A | grep -i ako