IBM Support

Fix Kafka certificate error

How To


Summary

Kafka utilizes certificates for connection, these are handled internally but sometimes need to be manually regenerated

Steps

 
The SevOne health check may return an error such as:
 
root@sevone:/ [7.2.2] [18:10:05] $ SevOne-act check kafka-ssl-certs

[ FAIL ] Check client cert is correctly signed with the CA cert - Client pem is not recgonized by the CA cert.

[ FAIL ] Check server cert is correctly signed with the CA cert - Server pem is not recgonized by the CA cert.

This means the certificate needs to be regenerated

In order to regenerate the kafka certificates, the following command will be utilized:
 
SevOne-act kafka gen-certs

Document Location

Worldwide

[{"Type":"MASTER","Line of Business":{"code":"LOB77","label":"Automation Platform"},"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSUWLY","label":"IBM SevOne Network Performance Management"},"ARM Category":[{"code":"a8m3p0000000rgTAAQ","label":"Platform"}],"ARM Case Number":"","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"7.0.0;7.1.0;7.2.0"}]

Document Information

Modified date:
20 January 2026

UID

ibm17237192