cd /var/log/gmanager/gmanager.log
####.##.##.## INFO http-nio-#########-exec-2 RemoteEdgeClusterServiceImpl 6462 - [nsx@6876 comp="global-manager" level="INFO" reqId="####.####.####.####" subcomp="global-manager" username=#######] Was not able to get data from remote site ##############. Error org.springframework.web.client.ResourceAccessException: I/O error on GET request for "https://#.#.#.#/policy/api/v1/ui-controller/overall-edge-clusters-rtep-status": PKIX path building failed: java.security.cert.CertPathBuilderException: Unable to find certificate chain.; nested exception is javax.net.ssl.SSLHandshakeException: PKIX path building failed: java.security.cert.CertPathBuilderException: Unable to find certificate chain..
####.####.##### INFO http-nio-####.####.####-exec-2 NsxKeyStoreFile 6462 SYSTEM [nsx@6876 comp="global-manager" level="INFO" reqId="####.####.####.####" subcomp="global-manager" username=##########] Create Key Store with file /home/secureall/secureall/.store/.bluelane_truststore
appl-proxy-rpc.log from Active GM
####.####.#### ####.######## NSX 1488 - [nsx@6876 comp="global-manager" subcomp="appl-proxy" s2comp="nsx-net" tid="1517" level="INFO"] StreamSocket[963712 Open f:61 i:271469838 ? -> ssl://#.#.#.#:1236] async_connect
####.####.#### ####.######## NSX 1488 - [nsx@6876 comp="global-manager" subcomp="appl-proxy" s2comp="nsx-net" tid="1517" level="INFO"] StreamSocket[963712 Open f:61 i:271469838 ? -> ssl://#.#.#.#:1236] on_connect 336151576-tlsv1 alert unknown ca
appl-proxy-npc.log from Standby GM
####################### NSX 1962 - [nsx@6876 comp="global-manager" subcomp="appl-proxy" s2comp="nsx-net" tid="2018" level="ERROR" errorCode="NET4"] NetTransport[1] Accept on endpoint 'ssl://#.#.#.#1236' failed with error 167772294-certificate verify failed (SSL routines) from remote endpoint 'ssl-tcp://10.173.1.4:45454'
####################### NSX 1962 - [nsx@6876 comp="global-manager" subcomp="appl-proxy" s2comp="nsx-rpc" tid="2018" level="WARNING"] RpcTransport[1] Accept on 'ssl://#.#.#.#:1236' failed with error 167772294-certificate verify failed (SSL routines)
Note - If all the logs are matching with the Active/Standby GM then run the latest CARR script to resolve expired/Unknown certificates and update thumbprint on LM's.
CARR script - Using Certificate Analyzer, Results and Recovery (CARR) Script to fix certificate related issues in NSX