Alias : https://<esx_fqdn>:443/iofiltervp/version.xml
Entry type : Trusted Cert
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
##:##:##:##:##:##:##:##
Signature Algorithm: sha256WithRSAEncryption
Issuer: CN=CA, DC=vsphere, DC=local, C=US, ST=California, O=<mgmt_domain_vcenter_fqdn>, OU=VMware Engineering
Validity
Not Before: #### GMT
Not After : #### GMT <- ~2 years later (default validity period of the ESXi host certificate)
Subject: C=US, ST=California, L=Palo Alto, O=VMware, Inc, OU=VMware ESX Server Default Certificate/emailAddress=ssl-certificates@vmware.com, CN=<esx_fqdn>/unstructuredName=####
::: truncated :::In vCenter Server's standard certificate modes (vmca/custom), trust is validated through the CA chain, so the old entry in the SMS store is not used and there is no functional impact.
Delete the old IOFilter entry in the SMS store.
KB 422990: SMS certificate in VECS has expired
KB 427041: vCenter Shows alarm for ESXi Certificate Mode 'thumbprint' is deprecated
KB 375445: Registration of a IOFilter VASA Provider failed after upgrading to ESX 9.0
Japanese KB: VCF ワークロードドメイン展開後、VECS の SMS ストアに iofiltervp の古い証明書が残り「Certificate Status」アラームが発報する