When using NSX with SDDC, there are certificates created and managed by SDDC in NSX managers.
Typically, these certificates are for NSX manager appliances.
These certificates would appear as "CA signed with private key" in NSX UI. If these certificates expire, SDDC manager will show them as such and there might be issue with communication between SDDC manager to the NSX managers.
VMware NSX
VMware SDDC
CA signed certificates are managed by user manually, NSX does not renew these certificates automatically.
To renew expired CA signed certificate,