VMware NSX
Private key is an optional field if imported certificate is based on NSX Manager generated CSR, as a private key exists on the NSX Manager appliance.
For the CSR is generated from Third Party, the Private key is required to be imported to ensure the NSX Managers are aware of it.
To resolve this issue:
1: Import the certificate from NSX UI / System/ Certificates / IMPORT / Certificate
2: Ensure both "Certificate Contents" and "Private key" are imported and uncheck "Service Certificate" for appliance certificates
3: Replace the certificate referring: Replace Certificates Through NSX Manager