Custom machine SSL certificate update fails with the following error:
"The provided MACHINE_SSL certificate and provided private key are not valid"
vCenter Server
The private key in vCenter Server is recreated when a CSR is generated, so if a custom certificate is created using a previous CSR, the certificate update fails on vCenter Server.
Issue a custom machine SSL certificate using the latest CSR.
Japanese KB: vCenter Server でカスタムのマシン SSL 証明書更新が失敗する