'Authentication Source certificate expiring' warning in VMware Aria Operations
search cancel

'Authentication Source certificate expiring' warning in VMware Aria Operations

book

Article ID: 425278

calendar_today

Updated On:

Products

VCF Operations/Automation (formerly VMware Aria Suite)

Issue/Introduction

Upon navigating to Administration > Control Panel > Trusted Certificates, an expiration warning is visible for the LDAP authentication source certificate.

Environment

VMware Aria Operations 8.18.5

Cause

When configured with LDAP as an authentication source, VMware Aria Operations utilizes a Trust on First Use (TOFU) mechanism to ingest the server's certificate. Because these certificates carry a specific validity period, the system will trigger a warning notification as the expiration date approaches to prevent authentication failures.

Resolution

  1. Verify that the certificate on the endpoint is not expired before proceeding. Renew certificate on endpoint if required, by following vendor documentation for replacing certificate on endpoint
  2. Follow procedure in KB article How to renew an adapter certificate or clear the Expired Certificates banner in Aria Operations to import new certificate from endpoint, ensuring that you import new certificate from endpoint before deleting expired certificate

Additional Information

Review article Certificate overview for VMware Aria Operations section 'Adapter and authentication sources' for more information on endpoint certificates and potential caveats.