I have replaced VMCA certificates in my lab, and because it was < 24 hours after i did that, i could not add my esxi hosts.
I found this :
Jeff Green left a comment there, and that was it. I changed the vpxd.certmgmt.certs.minutes value, and this did the trick.