How to determine if VMware Aria Operations Web Certificate has expired
search cancel

How to determine if VMware Aria Operations Web Certificate has expired

book

Article ID: 414866

calendar_today

Updated On:

Products

VCF Operations

Issue/Introduction

  • The purpose of this KB is to outline how to determine if a VMware Aria Operations Web Certificate has expired

Environment

VMware Aria Operations 8.18.x

Resolution

To Identify if Web Certificate Renewal is Required you have 3 possible options:

Option 1: Through command line

  1. Open ssh session as root to VMware Aria Operations Primary node
  2. Run the command 
    echo | openssl s_client -connect <OpsFQDN>:443 2>/dev/null | openssl x509 -noout -dates   
    

    *Replacing <OpsFQDN> with the FQDN of your VMware Aria Operations Primary node

  3. Output is similar to below extract 
    notBefore=Nov  4 10:50:16 2024 GMT
    notAfter=Oct 28 10:50:16 2054 GMT

Option 2: The certificate can be checked from a Web Browser

Mozilla Firefox

  1. Open https://Primary_Node_IP_or_FQDN in Mozilla Firefox Browser
    • Replace Primary_Node_IP_or_FQDN with the actual IP or FQDN of the Aria Operations Primary node.
  2. Click on the Lock icon in the URL bar
  3. Click on Connection secure 
  4. Click on More information. A pop out window will appear with Certificate details. 
  5. Click View Certificate  
  6. Scroll to Validity section to view the expiry date
Google Chrome
  1. Open https://Primary_Node_IP_or_FQDN in Google Chrome Browser
    • Replace Primary_Node_IP_or_FQDN with the actual IP or FQDN of the Aria Operations Primary node.
  2. Click on View site information icon in the URL bar
  3. Click on Connection is Not Secure/Connection is Secure
  4. Click on Certificate is Invalid/Certificate is valid . A pop out window will appear with certificate details
  5. Leave Generate Tab selected
  6. Locate the Validity Period in the pop out window

Microsoft Edge

  1. Open https://Primary_Node_IP_or_FQDN in Google Chrome Browser
    • Replace Primary_Node_IP_or_FQDN with the actual IP or FQDN of the Aria Operations Primary node.
  2. Click on Lock icon in the URL bar
  3. Click on Connection is Not Secure/Connection is Secure
  4. Click on the Show certificate icon a pop out window will appear with certificate details
  5. Locate the Validity Period section in the pop out window

Option 3: Through VMware Aria Suite Lifecycle Manager locker 

Alternatively if you have VMware Aria Suite Lifecycle you can see if the certificate is expired by

  1. Signing into your VMware Aria Suite Lifecycle appliance
  2. Go to the home page
  3. Click on Locker
  4. Click on Certificates 
  5. Locate the VMware Aria Operations certificate that is in use for the VMware Aria Operations environment in the list of certificates.  It will show if the certificate if expired here.