VMware vCenter 7.x
VMware vCenter 8.x
VMware vCenter 9.x
openssl s_client -showcerts -connect dc.domain.com:636 </dev/null 2>/dev/null | sed -n '/-----BEGIN CERTIFICATE-----/,/-----END CERTIFICATE-----/p' > dc.domain.com.cerIf this is an ELM (Enhanced Linked Mode) environment, only perform the following steps on a single vCenter, as the IdP configurations replicate to the other linked vCenter servers.
Take the appropriate snapshot(s) of vCenter Server.
Note: If Enhanced Linked Mode, make sure to take offline snapshots of all linked vCenter virtual machines before proceeding.
Log in to the vSphere Client using a Single Sign On Administrator.
Under Menu, select Administration > Configuration > Identity Sources.
Important Information about configuring an LDAPS identity source:
openssl s_client -connect Domain_Controller_IP:636