NSX Certificate is not found when replacing certificates by NSX UI
search cancel

NSX Certificate is not found when replacing certificates by NSX UI

book

Article ID: 424880

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • The NSX Certificates is not found and returns "No Items Found" from "Select Certificate to Replace with/Select Service/Entity"

  • The CSR is generated from Third Party but not from NSX Managers
  • The Certificate is generated from Third Party
  • The "Private key" is not input when importing certificate

Environment

VMware NSX

Cause

Private key is an optional field if imported certificate is based on NSX Manager generated CSR, as a private key exists on the NSX Manager appliance.

For the CSR is generated from Third Party, the Private key is required to be imported to ensure the NSX Managers are aware of it.

Resolution

To resolve this issue:

1: Import the certificate from NSX UI / System/ Certificates / IMPORT / Certificate

2: Ensure both "Certificate Contents" and "Private key" are imported and uncheck "Service Certificate"  for appliance certificates

3: Replace the certificate referring: Replace Certificates Through NSX Manager

 

Additional Information

https://techdocs.broadcom.com/us/en/vmware-cis/nsx/vmware-nsx/4-2/administration-guide/certificates/importing-certificates/import-a-certificate.html