Generating certificates with vCenter VMCA as a certificate authority in vCenter Web client
search cancel

Generating certificates with vCenter VMCA as a certificate authority in vCenter Web client

book

Article ID: 387679

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

As of vCenter 8.0 U3 vCenter Certificate Management in the Web UI can be used as a certificate authority to issue certificates using a Certificate Signing Request.

Resolution

  1. Browse to the vCenter Web interface
  2. Expand the top left vertical 3 line "hamburger" menu
  3. Click Administration 
  4. Click Certificates 
  5. Certificate Management 
  6. Click Trusted Root
  7. Click Issue New Leaf Certificate
  8. Browse to CSR file
    1. Upload
    2. Next
    3. Download certificates  

 

 

Additional Information

A use case for this is being able to update expired VMCA certificates for vTPM VMs without using a third-party CA.

Export and Replace Virtual Trusted Platform Module Device Certificates