After you replace the certificates of all Platform Services Controller instances and all vCenter Server instances, replace the certificates for the NSX Manager instances.
Table 1. Certificate-Related Files on the NSX Manager Instance for the Management Cluster in Region B

NSX Manager FQDN

Certificate filename




  1. Log in to the appliance interface of NSX Manager for the management cluster.
    1. Open a Web browser and go to https://lax01m01nsx01.lax01.rainpole.local .
    2. Log in using the following credentials.



      User name




  2. On the Home page, select Manage Appliance Settings.
  3. On the Manage tab, click SSL Certificates and click Upload PKSCS#12 Keystore.
  4. Browse to the certificate chain file lax01m01nsx01.4.p12, provide the keystore password or passphrase, and click Import.
  5. Restart the NSX Manager to propagate the CA-signed certificate.
    1. In the top right corner of the NSX Manager page, click the Settings icon. 
    2. From the drop-down menu, select Reboot Appliance.
    3. On the Reboot Confirmation dialog box, click Yes.