"Certificates without Private Key" found from NSX Manager
search cancel

"Certificates without Private Key" found from NSX Manager

book

Article ID: 430502

calendar_today

Updated On:

Products

VMware NSX VMware Aria Operations (formerly vRealize Operations) 8.x

Issue/Introduction

  • "Certificates without Private Key" found from NSX Manager/ System Overview /Configuration
  • The dedicated certificate Category is "Client Auth" and Type is "Self Signed" from NSX Manager/ System/ Certificates
  • The Principal Identity User is in use from NSX Manager/ System/ User Management
  • The Aria Operations integrated NSX using "NSX Client Certificate Credentials"

Environment

VMware NSX

VMware Aria Operations

Cause

Aria Operations integrated NSX using "NSX Client Certificate Credentials" on Aria Operations/ Administrations/ Integrations/ Credentials

Resolution

It's normal behavior which could be validated following:

1: Generate Certificate/Private Key with openssl

2: Add Principal Identity from NSX Manager using Only the certificate from Step 1

3: Create Credentials with "Credential Kind"/ "NSX Client Certificate Credentials" using Certificate and Private Key from Step 1 on Aria Operations/ Integrations/ Credential

4: Edit NSX to use the new Credential and "VALIDATION CONNECTION"

 

Additional Information

https://techdocs.broadcom.com/us/en/vmware-cis/aria/aria-operations/8-18/vmware-aria-operations-configuration-guide-8-18/connect-to-data-sources/nsx-introduction/configure-nsx-management-pack.html

https://techdocs.broadcom.com/us/en/vmware-cis/nsx/vmware-nsx/4-2/administration-guide/authentication-and-authorization/add-role-assignment-or-principal-identity.html