NSX Manager, Edge OVA import fails due to expired certificate
There is a new issue affecting all NSX based OVA deployments. From 3 rd of January 2026 onwards, deployments and redeployments of NSX Edge and Managers will fail due to an expired certificate in the OVA. This will affect workflows involving new appliance deployment, such as greenfield deployments from standalone NSX and VCF based NSX, Edge cluster expansion, NSX appliance resizing and replacement, and restoring from backup. Failure will be observed when deploying from the vSphere client, OVF Tool, the NSX UI and VCF Installer. All NSX releases are affected (3.x, 4.x, 9.0.x) Resolution / Workaround This is a known issue. New Releases of NSX 4.x and NSX 9.x will include a new valid certificate. Workaround: In vSphere Client you can just ignore the expired certificate and acknowledge the warning. For ovftool based deployments just add the parameter –disableVerification For VCF 9 Installer based deployments it is an option to execute the import of the NSX Manager ...