Many unused certificates are visible in NSX after upgrading to version 4.2.2.x.
search cancel

Many unused certificates are visible in NSX after upgrading to version 4.2.2.x.

book

Article ID: 408927

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • After the upgrade to NSX version 4.2.2.x, several unused certificates appear in the NSX UI
  • The "Used By" column shows zero and the certificates are not in use by any service

Environment

NSX 4.2.2.1

Cause

In NSX 4.2.2, the number of certificates has been reduced, and as part of the NSX upgrade process, some certificates were intentionally marked as "orphaned."

Resolution

This is expected behavior. To address the issue, delete the certificates that show a value of 0 in the "Used By" column.

Note: If the "Used By" field on a certificate is greater than zero, it indicates that the certificate is still associated with one or more components in the NSX environment. Such certificates should not be deleted.

Additional Information

Also refer to KB: Unused Expired NSX Certificates

If the steps outlined in this KB do not resolve the issue, please raise a support ticket with Broadcom Support, selecting NSX as the product.

Handling Log Bundles for offline review with Broadcom support.