UCS alarm: default Keyring's certificate is invalid, reason: expired.
When upgrading UCS, an alarm is found in UCS, as shown in the following figure:
In fact, the occurrence of this alarm does not affect the use of UCS Manager, of course, we can also regenerate a key, which will disappear after a while.
Here is how to regenerate key:
First log in to UCS Manager through SSH, and then enter the following commands in turn
# scope security
/ security # scope keyring default
/ security/keyring # set regenerate yes
/ security/keyring * # commit-buffer
After waiting for a while after regenerating, I found that the alarm in UCS Manager had disappeared.
The following is the official document, which can be downloaded for reference:
Http://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/sw/cli/config/guide/2-0/b_UCSM_CLI_Configuration_Guide_2_0/b_UCSM_CLI_Configuration_Guide_2_0_chapter_0110.pdf
There are specific solutions in the official link, as shown in the following figure:
The default key ring certificate must be manually regenerated if the cluster name changes or the certificate expires.
Only when I see the official documents do I know that when this happens, I can only update it manually.