VxRail Management certificate shows expired in SDDC Manager - VMware Cloud Foundation
search cancel

VxRail Management certificate shows expired in SDDC Manager - VMware Cloud Foundation

book

Article ID: 379651

calendar_today

Updated On:

Products

VMware Cloud Foundation 4.x VMware Cloud Foundation VMware Cloud Foundation 5.x

Issue/Introduction

  •  After updating the certificate of VxRail manager in SDDC Manager, the VxRail certificate status shows expired 

Environment

  • VMware Cloud Foundation 4.x
  • VMware Cloud Foundation 5.x

Cause

This issue occurs due to the certificate being unable to sync from the vCenter.

Resolution

Note : If the certificate unable to renew from the SDDC Manager UI, then you can follow the below steps. 

Steps to Renew the Certificate for VxRail Management in vCenter if the certificate expired.

  1. Login to the SDDC Manager UI
    • Generate the CSR for VxRail manager from the SDDC UI and download. 
    • Contact Dell and renew the VxRail certificate and update on the vCenter.
  2. Using SDDC Manager key tool update the certificate in SDDC Manager. Refer the following article.
    How to add/delete Custom CA Certificates to SDDC Manager and Common Services trust stores

  3. Login to the SDDC Manager UI
    1. Click on the Workload domain.
    2. Click on the domain, where you want to change the certificate.
    3. Click on certificate.
    4. Click on the check box for the VxRail Management.
    5. Click on upload and install the certificate.
    6. Upload the same certificate to the SDDC Manager UI stated in step 3. 
  4. Run the below command for the inventory sync in the SDDC Manager.

    curl -X GET http://localhost/inventory/vcfservices | json_pp