Stale or False Positive "Certificate Expired" Alarms in NSX
search cancel

Stale or False Positive "Certificate Expired" Alarms in NSX

book

Article ID: 408608

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

Title: Certificate Expired

Event ID: certificate_expired

Severity: Critical

Alarm Description: Certificate {entity_id} has expired

Environment

VMware NSX

Resolution

A comprehensive global search for the specified certificate ID, conducted via both CLI and API methods, yielded no corresponding findings indicating that this seems to be a stale alarm.

Hence, the alarm was moved to resolved state, after which no new alarms have been triggered again regarding this specific certificate.

  • No Expired certificates reported on NSX.

  • Searching for the certificate UUID from the alarm doesn't give any result.

  • The API Call used to check the certificate details:
    • GET https://<nsx-mgr>/api/v1/trust-management/certificates/<cert-id>

For more information regarding this issue, please open a support case with Broadcom Support and refer to this KB article: Creating and managing Broadcom support cases