When replacing certificates in the VCSA via CLI we get the following error in the Certificate-Manager:
Do you wish to generate all certificates using configuration file : Option[Y/N] ? : y
Please provide valid SSO and VC privileged user credential to perform certificate operations.Enter username [[email protected]]:[email protected]Enter password:***************
Certificate Manager tool do not support vCenter HA systems
The vmware folder is missing in /var/tmp/ directory
/var/tmp/vmware exists /usr/lib/vmware-vmca/bin/certificate-manager /usr/lib/vmware-vmca/share/config directory.Note: Edit the below file as per the environment details.
## Template file for a CSR request#
# Country is needed and has to be 2 charactersCountry = USName = CAOrganization = VMwareOrgUnit = VMware EngineeringState = CaliforniaLocality = Palo AltoIPAddress = 127.0.0.1Email = [email protected]Hostname = server.acme.com
Impact/Risks:
If certificates are expired, it is impossible to replace the certificates and bring the vCenter server online.