I try to replace appliance identity certificate
- Generated CSR for Manager
- Generated CSR for Collector
- Sent them to OUR CA (DC) (admins did template follow this guide https://dependencyhell.net/2021/securing-stealthwatch-with-ca-signed-certificates)
- Get CER files
- Upload ROOT CA / Manager cer / Collector cer to trust store
But when I tried to replace identity for collector I got an error - Your configuration changes are invalid for SSL/TLS Appliance Identity. Uploaded Chain Certificate is either expired or not valid.
BTW my root CA only has 2048 key length and I don't have any intermediate CA. Can I replace identity without Intermediate?