"Unable to create CA." error when updating the Certificate Authority on the SDDC Manager
search cancel

"Unable to create CA." error when updating the Certificate Authority on the SDDC Manager

book

Article ID: 421820

calendar_today

Updated On:

Products

VMware SDDC Manager

Issue/Introduction

  • On the SDDC Manager, configuring the Certificate Authority under Security -> Certificate Authority fails with error:
    "Unable to create CA.".

  • From /var/log/vmware/vcf/operationsmanager/operationsmanager.log:

    YYYY-MM-DDTHH:MM:SS ERROR [vcf om, e9c36abf9#######, ####] [c.v.e.s.e.h.LocalizableRuntimeExceptionHandler, http-nio-127.0.0.1-####-exec-6] [LJ1###] CERTIFICATE CA CREATION FAILED Template <Template_name> not found. Available templates: [Template_A, Template_B, etc
    ].

  • During the configuration task of the Certificate Authority, when one of the available templates mentioned in the error message is used, the task is successful.

Environment

SDDC Manager 5.x

Cause

  • The specified Certificate Template for the Certificate Authority configuration does not exist or has not been published on the external Certificate Authority (CA) Server.

Resolution

  • Create or publish the required certificate template on the external Certificate Authority (CA) Server.
  • Reconfigure the Certificate Authority configuration on the SDDC Manager.