"The certificate with id failed to parse with error: null" error observed in NSX upgrade pre-check for stale Management Cluster certificate
search cancel

"The certificate with id failed to parse with error: null" error observed in NSX upgrade pre-check for stale Management Cluster certificate

book

Article ID: 407342

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • Performing an upgrade pre-check results in an error for NSX Managers:
    The certificate with id ######-####-####-####-########## failed to parse with error: null. Please delete (if unused) or replace this certificate prior to upgrading.
  • From the UI, navigate to System > Certificates and look for the certificate id mentioned in the warning.
  • The certificate matching the ID is an expired Management Cluster certificate and is applied to a Manager node uuid that has been removed from the NSX environment.

Environment

VMware NSX

Cause

  • The upgrade pre-check verifies certificate validity and reports back if there are any issues, for example, expired or unsupported certificates.
  • The expired certificate is a stale entry which failed to removed when the Manager appliance was removed and replaced with a new instance.

Resolution

Release and delete the expired certificate using CARR script using KB:

Using Certificate Analyzer, Results and Recovery (CARR) Script to fix certificate related issues in NSX

Additional Information