Deleting certificate from Strata Cloud Manager fails with 'Error - Can't Delete Objects in Use'

Deleting certificate from Strata Cloud Manager fails with 'Error - Can't Delete Objects in Use'

253
Created On 03/05/24 02:02 AM - Last Modified 10/16/25 23:55 PM


Symptom


When deleting a certificate created under trusted-root-CA, it fails with the following error.
Error - Can't Delete Objects in Use

A rule or another object is referencing TrustClientRootCA_botu. You can't delete objects that are in use. To delete an object, first remove it from the rules or other objects that are referencing it.

It happens when creating a certificate with the same name as the existing certificate, such as with the following steps;
  1. Create a server certificate, 'Test_Cert,' specifying the issuer, 'Root CA'
  2. Push Config
  3. Generate a CA certificate with the same name, 'Test_Cert,' specifying the issuer, 'Root CA,' with 'Certificate Authority' and 'Trusted Root CA' options enabled
  4. Push Config

 



 


Environment


  • Strata Cloud Manager (SCM)


Cause


We don't allow creating a certificate with the same name in the SCM.

Resolution


As of Mar 5th, 2024, there are no plans to fix this as an issue. Please contact our sales team to raise a feature request to prevent the user from creating duplicate certificates.

For the certificate, which has already been created and cannot be deleted, please open a support case because we need to delete the al the references to that certificate in our backend. After that, please delete it from SCM.


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000008XPxCAM&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail