Replace the certificate on an NSX Manager instance, for example, if it is about to expire, and update it on the management components connected to this instance.
Procedure
Replace the Certificate of NSX Manager for the Management Cluster in Region A After you replace the certificates of all Platform Services Controller instances and all vCenter Server instances, replace the expiring certificates for the NSX Manager instances.
Connect NSX Manager to the Management vCenter Server in Region A After you replace the certificate of an NSX Manager instance, you reconnect it to Platform Services Controller and vCenter Server to update the certificate on these components.
Re-Join Secondary NSX Manager to Primary NSX Manager in Region A After you replace the certificate on the NSX Manager in Region A, update its certificate on the paired NSX Manager in Region B.
Replace the NSX Manager Certificate for the Shared Edge and Compute Cluster in Region A After you deploy the NSX Manager appliance, replace the default certificate to establish a trusted connection with the management components in the SDDC. The certificate generated by the CertGenVVD utility is signed by a certificate authority (CA) on the parent Active Directory server.
Reconnect NSX Manager in Region A to vRealize Operations Manager After you replace the certificate on each NSX Manager instance in the region, reconnect the NSX adapter in vRealize Operations Manager to update the certificate on vRealize Operations Manager.