Unable to apply new machine SSL certificate to vCenter
search cancel

Unable to apply new machine SSL certificate to vCenter

book

Article ID: 416133

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

  • The vCenter Server Machine SSL Certificate has expired.
  • The replacement may have been attempted using the vCenter Server GUI.
  • The replacement may have been attempted using guidance from KB31601.
  • After doing either of the above methods, the vCenter Server interface is no longer available.

Environment

VMware vCenter Server

Cause

The certificate wasn't properly replaced and the expired certificate is still in use.

Resolution

  1. Copy the vCert script zip file attached to KB385107 to the affected vCenter Server.
  2. Once uploaded to the vCenter Server, unzip the file using:
    unzip -q vCert-6.#.#.########.zip

  3. Change directories into the new folder:
    cd vCert-6.#.#.########

  4. Execute vCert using the python script:
    ./vCert.py

  5. Choose menu option 3 and press <Enter>


  6. Choose menu option 1 and press <Enter>


  7. Choose menu option 1 again to use a VMCA-Signed certificate for the new Machine SSL certificate.