Error message "The certificate is expired" when attempting to deploy Aria Operations for Logs via OVA or import the OVA to a Content Library
search cancel

Error message "The certificate is expired" when attempting to deploy Aria Operations for Logs via OVA or import the OVA to a Content Library

book

Article ID: 442582

calendar_today

Updated On:

Products

VCF Operations/Automation (formerly VMware Aria Suite)

Issue/Introduction

  • When attempting to import the Aria Operations for Logs OVA into a Content Library the following error is shown and you cannot proceed

"The certificate is expired"

  • When attempting to deploy Aria Operations for Logs OVF Template "The certificate is expired" warning banner is shown

 

Environment

Aria Operations for Logs 8.18.x

Cause

The OVA packaging signing certificate has expired and is being flagged by vCenter Server's OVF/OVA validation mechanism. This triggers the expiration compliance warning and prevents the deployment from continuing until the warning is explicitly dismissed

Resolution

This is a known issue impacting the OVA packaging process for the currently available versions of Aria Operations for Logs 8.18.x. The signing certificate has expired, but it does not affect the functionality of the deployed appliance.

To work around this limitation and proceed with the OVF deployment:

  1. On the "Review Details" step of the Deploy OVF Template wizard, locate the warning banner containing the message: "The certificate is expired."
  2. Select the Ignore link within the warning banner. This action acknowledges and accepts the expired certificate, dismissing the warning.
  3. Once the warning is dismissed, the Next button will become active. Click Next to continue with the remaining steps of the deployment process.

To work around this limitation and proceed with the import for Content Library:

  1. Edit Settings for the Content Library
  2. Temporarily disable the Security Policy which is applied to the Content Library
  3. Attempt to re-import the Aria Operations for Logs OVA to the Content Library 
  4. The following error will now be shown "If the certificate or manifest file are not available at source during the import process, validations for each will be skipped."
  5. Select 'Import' to acknowledge the warning and 'Proceed Anyway' to import the OVA file successfully

Note on Certificate Impact - The certificate that has expired is exclusively used to digitally sign the OVA file for integrity checking. It is not the SSL/TLS certificate used by the deployed Aria Operations for Logs appliance