This article provides information on how to replace certificates using H5C UI in vCenter server 7.0 Update 3 and later
Symptoms:
There will be an alert in the vSphere UI:
STS Signing Certificates are about to expire
To Update the STS signing certificate using H5C UI:
Steps to Update the Certificate:
Note: Before making any changes, please create offline or cold snapshots of all the vCenter servers in the environment.
In an Enhanced Linked Mode (ELM) setup, this should be performed on a single vCenter, and a restart of all systems in the SSO domain is required afterward.