VMAX3, VMAX AFA, PowerMax: ConnectEMC’s Root Certificate Requires an Upgrade

Summary: A certificate of trust is used between the array's ConnectEMC connect home software and the Secure Connect Gateway (SCG). The certificate is expiring and must be replaced in order for connect home connectivity to be maintained. ...

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

The array can no longer connect home with the HTTPS protocol after certificate expiration.

Connect homes from the array stop if the certificate expires.

ConnectEMC HTTP Logs show error:  "http failed SSL certificate problem: self signed certificate in certificate chain, error:60"


Affected array models:

  • VMAX-1
  • VMAX-2
  • VMAX3 Hybrid
  • VMAX All Flash
  • PowerMax 2000
  • PowerMax 8000

Cause

The ConnectEMC root certificate that is used for HTTPS communications to the SCG expired on March 22, 2025, at 8:16 PM (GMT) on the Management Module Control Station (MMCS).

Resolution

CAUTION: Dell is working to apply the latest ConnectEMC file to all arrays that has remote connectivity leveraging Secure Remote Services. The Certificate file update is applied to the management module control station (MMCS). The file that is being updated is part of ConnectEMC and is isolated from any potential risks associated with array data integrity.


Dell is taking the necessary steps to connect to the array and apply the updated Certificate to maintain array call home.

For arrays configured with Policy Manager that require approval for access, Dell initiates a conversation with prior to any attempt to connect to the array.

"Dell is currently in the process of remotely connecting to arrays and updating the ConnectEMC certification file to ensure that dial home remains operational."


NOTE 1: The ConnectEMC root certificate must be upgraded before March 21, 2025. After March 21, 2025, with the original certificate, ConnectEMC can no longer authenticate with SCG over HTTPS protocol.

 

NOTE 2: Secure Connect Gateway root certificates are to Expire on March 21, 2025. "The Secure Connect Gateway (SCG) must be upgraded to version 5.24 (or later), which includes a corresponding new server certificate. Both the SCG and the affected product must be updated to ensure ConnectEMC HTTPS call-homes function after March 21, 2025. These updates can be performed in any order and at any time before that date. See the link below for more details on the SCG requirements and for other affected products."  See DTA 226855 which is linked below.


DTA 226855: Secure Connect Gateway: ConnectEMC root certificates are to Expire March 21, 2025.

Dell personnel can connect to the array and update the certificate non-intrusively. Connect with your local Dell service representative for assistance.

FCO: Customers who have been identified as exposed to this issue are notified with the release of PFE ET005151. ET005151 was released on January 07, 2025.

Additional Information

Is the certificate upgrade a disruptive process?
No, it is not a disruptive process.

Can the certificate be updated without Dell Technologies assistance?
Dell Technologies Support must connect to the array and update the certificate.

Are the PowerMax 2500 and 8500 models affected by this expiry issue?
No, this issue does not affect either model. Both models use a different dial-home software which also uses the HTTPS protocol for file transfer to the SCG. Its certificate is being updated periodically with new expiry dates.

Affected Products

PowerMax 2000, PowerMax 8000, VMAX All Flash, VMAX3 Series
Article Properties
Article Number: 000227668
Article Type: Solution
Last Modified: 05 يونيو 2026
Version:  19
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.