Error showing CBM certificate in database does not match with keystore
search cancel

Error showing CBM certificate in database does not match with keystore

book

Article ID: 450594

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • The environment runs NSX 4.1.0.2 or below
  • Running NSX upgrade pre-check shows CBM_CLUSTER_MANAGER certificate alert
  • After running CARR script, alert regarding CBM_CLUSTER_MANAGER is still seen in the CARR script output, similar to

    CBM_CLUSTER_MANAGER

    ERROR  : ##.##.##.##   : Certificate in database does not match with keystore of ##.##.##.##

Cause

This is a known issue for NSX versions 4.1.2 or below relating to CBM certificates.

Resolution

It may be necessary to run the CARR script twice to correct CBM based certificates.  Running the CARR script a second time will resolve this issue.

See: Using Certificate Analyzer Resolver (CARR) Script to fix certificate related issues in NSX