Updating custom certificates for vCenter from vSphere Client
search cancel

Updating custom certificates for vCenter from vSphere Client

book

Article ID: 427001

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

This article describes the process for updating custom certificates for vCenter using vSphere Client.

Environment

VMware vCenter Server 7.x
VMware vCenter Server 8.x
VMware vCenter 9.x

Resolution

Follow the steps below to generate a CSR (Certificate Signing Request) and import the newly issued certificate:

    1. Generate the CSR:

    1. Login to the vSphere Client.
    2. Under Menu -> Administration -> Certificates Management, select the vCenter Server.
    3. Select 'Generate certificate signing request (CSR)'.
    4. Provide the CSR to the Certificate Authority.

Note: For certificate requirements, see Generating a Certificate Signing Request for a Machine SSL Certificate using the vSphere Client (Custom Certificates) .

    2. Import the Custom Certificate:

    1. Under Menu -> Administration -> Certificates Management, select the vCenter Server.
    2. Select Import and Replace Certificate.
    3. Choose "Replace with external CA certificate where CSR is generated from vCenter Server (private key embedded)" option and click Next.
    4. Upload the appropriate certificates and finish the task.

Additional Information