Expiring solution user certificates cause vCenter Server to throw "Certificate Status" alarm
search cancel

Expiring solution user certificates cause vCenter Server to throw "Certificate Status" alarm

book

Article ID: 397104

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

This article discusses the "Certificate Status" alarm in vCenter Server.

Environment

vCenter Server 7.x/
vCenter Server 8.x

Cause

The "Certificate Status" alarm is configured based on the vpxd.cert.threshold and vpxd.certmgmt.certs.hardThreshold advanced settings in vCenter. The default value for both settings is 30.

This means that when solution user certificates are expiring in 30 days or less, the alarm will be thrown.

Resolution

Replace the solution user certificates so that their expiration dates are further than 30 days away.

Replacing expired/expiring certificates with vCert