VMware Cloud Foundation (VCF) 5.x
VMware Cloud Foundation (VCF) 9.0
To renew vCenter self-signed certificates using the integrated OpenSSL Certificate Authority (CA) workflow in SDDC Manager, follow these steps:
Note: Ensure all vCenter Servers in the linked-mode group have powered-off snapshot or a verified file-level backup.
1. Generate Certificate Signing Requests (CSRs)
Inventory > Workload DomainsCertificates tab.Generate CSRs.Generate CSRs**.2. Generate Signed Certificates.
Note:Make sure the "openssl" certificate authority is configured: Configure OpenSSL-signed Certificates in SDDC Manager
Generate Signed Certificates.OpenSSL from the Select Certificate Authority drop-down menu.Generate Certificates**.3. Install Certificates
Install Certificates.Confirm the vCenter certificate status is marked as **Valid** in the SDDC Manager UI and the vCenter server certificates are now updated.
For Custom Certificate Renew/Install steps:
1. Microsoft CA Certificates
Note: You must have a Microsoft CA configured as outlined in following documentation prior to above steps to complete this: Install Microsoft CA-Signed Certificates using SDDC Manager
2. Other Custom CA Certificate