In Part 1 of NSX-T SSL Certificate Replacement, the process of certificate template preparation and request has been explained. This blog post will teach you how to import and replace the generated certificate into NSX-T Manager. It is really important to verify the imported certificate before replacing it. I want to point out that if you are using a Virtual IP for you NSX-T management cluster, you should have generated the SSL certificate for management cluster’s Virtual IP address.
![https://miro.medium.com/max/1200/1*3Ntz8MAEObg_dW10I9-RfQ.png](https://miro.medium.com/max/1200/1*3Ntz8MAEObg_dW10I9-RfQ.png)