How to Regenerate UCS Default Keyring Certificate

Saw this fault in UCS Manager prior to a firmware upgrade “default Keyring’s certificate is invalid, reason: expired”

I didn’t want any issues to interfere with the upgrade – not that this would, but for my piece of mind. So I regenerated it by issuing the following commands. This is a non-intrusive procedure and only need to run once on the primary FI. If you’re not sure which one is primary, simply establish a Putty session to the UCS Manager.

scope security
scope keyring default
set regenerate yes
commit-buffer

After a few minutes the fault in the UCS Manager cleared and I performed the firmware upgrade.

Reference: https://www.cisco.com/c/en/us/td/docs/unified_computing/ucs/sw/cli/config/guide/2-0/b_UCSM_CLI_Configuration_Guide_2_0/b_UCSM_CLI_Configuration_Guide_2_0_chapter_0110.pdf