This series collects the NSX internal certificate replacement procedures documented in July 2023. Start with the certificate’s name and affected service in your environment, then use the corresponding walkthrough to understand the UI and API operations shown.

Choose the affected service

Certificate or serviceWalkthrough
Corfu APIReplace the Corfu API certificate
ARReplace the AR Corfu certificate
CCPReplace the CCP Corfu certificate
CSMReplace the CSM Corfu certificate
GMReplace the GM Corfu certificate
MPReplace the MP Corfu certificate
Cluster ManagerReplace the Cluster Manager Corfu certificate
MonitoringReplace the Monitoring Corfu certificate
IDPS ReportingReplace the IDPS Reporting Corfu certificate

These are version-specific examples. Confirm the procedure in the NSX documentation for your installed release, identify the correct certificate and node IDs, and prepare the required backup and recovery plan before a replacement. Do not assume the same API or service identifier applies to every certificate.

If deletion reports that a certificate is still used by a management-plane node, see the MP node certificate association investigation. More administration and VCF integration topics are in the NSX guides.