After renewing self-signed certificates for vCenter and regenerating certificates for ESXi hosts, replication jobs in VCDA may fail with the following symptoms:
Invalid or inaccessible datastoreerror.VMware Cloud Director Availability 4.7.x
When vCenter or ESXi certificates are regenerated, the VCDA services (Replicator, Tunnel, Manager, and Cloud Services) lose their trusted connection to the vCenter Lookup Service.
Because the existing thumbprints in VCDA no longer match the new certificates, VCDA cannot securely query vCenter to locate datastores or manage replication traffic. This results in the "Invalid or inaccessible datastore" error as the service endpoint communication is broken.
To resolve this issue, you must force VCDA to trust and register the new vCenter/Lookup Service certificate thumbprints across all affected appliances.
Update the Lookup Service registration in the VCDA management interfaces to register the new certificate thumbprint.