Security Scan on host reports presence of revoked certs on host
search cancel

Security Scan on host reports presence of revoked certs on host

book

Article ID: 422877

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

This is an information article about revoked certs on Esx host. 

  • After a security scan on Esx host, the security tool reports host has revoked or expired certs in /etc/vmware/ssl
  • The security tool recommends to "Replace expired and revoked certificates with Certificates from a trusted CA"

Environment

VCF 9.0

Esx 9.0

Cause

By default Esxi doesn't store any revoked certs. Security tool alerts this if the host certificates are expired.

Resolution

To fix this follow one of below steps.