Impact for NSX Native LoadBalancer/Virtual Servers when replacing NSX Manager Certificates in SDDC
search cancel

Impact for NSX Native LoadBalancer/Virtual Servers when replacing NSX Manager Certificates in SDDC

book

Article ID: 417989

calendar_today

Updated On:

Products

VMware SDDC Manager VMware NSX

Issue/Introduction

  • Replacing NSX Manager Certificates from CA to Third-Party in SDDC
  • The certificates from Third-Party are in use for NSX Native LoadBalancer/Virtual Servers
  • LoadBalancer/Virtual Servers should be using NSX service certificates
  • Is there any impact to LoadBalancer/Virtual Servers when replacing NSX Manager Certificates

Environment

VMware SDDC Manager

VMware NSX

Cause

NSX service certificates are user-facing for services such as load balancer, VPN, and TLS Inspection.

The policy API manages service certificates. Non-service certificates are used by the platform for tasks such as cluster management. The management plane (MP) or truststore APIs manage non-service certificates.

Resolution

NO Impact for LoadBalancer/Virtual Servers when replacing NSX Manager appliance certificates.

Additional Information

https://techdocs.broadcom.com/us/en/vmware-cis/nsx/vmware-nsx/4-2/administration-guide/certificates/types-of-certificates.html