Error "NET::ERR_CERT_AUTHORITY_INVALID" displayed on SDDC UI after CA certificate replacement
search cancel

Error "NET::ERR_CERT_AUTHORITY_INVALID" displayed on SDDC UI after CA certificate replacement

book

Article ID: 451055

calendar_today

Updated On:

Products

VCF Operations VMware SDDC Manager / VCF Installer VMware Cloud Foundation

Issue/Introduction

 

  • SDDC browser URL reports "Not secure".

  • Certificate details in the browser display only displays the server certificate.

  • VCF Operations UI (Fleet Management) reports the SDDC Manager certificate as active with valid start and expiration dates.

 

Environment

 

  • VCF: 9.0, 9.1

  • SDDC Mgr: 9.0, 9.1

  • VCF Ops: 9.0, 9.1

 

Cause

The new custom CA-signed certificate is missing the intermediate and root CA certificates.

Resolution

 

  1. Generate a new PEM file containing the complete certificate chain in the required order:

    • Server Certificate

    • Intermediate CA Certificate(s)

    • Root CA Certificate

  2. Log in to the VCF Operations UI and upload the new PEM file / CA certificate to SDDC Manager:

    Manage > Fleet Management > Certificates

 

Additional Information

See Configure a Custom Web Certificate