Install a CertGenVVD-Generated Certificate on vSphere Data Protection in Region B
After you use the VMware Validated Design Certificate Generation Utility (CertGenVVD) to generate certificates for the SDDC management components, replace the default VMware-signed certificate on vSphere Data Protection in Region B with the certificate that is generated by CertGenVVD.
Before you begin
Generate the Microsoft CA-signed certificate by using the CertGenVVD tool. See Use the Certificate Generation Utility to Generate Certificates Automatically in Region A.
Procedure
Copy the .keystore file that CertGenVVD tool generated to the /root folder on the vSphere Data Protection virtual appliance.
You can use scp, FileZilla or WinSCP.
Log in to the vSphere Data Protection appliance.
- Open an SSH connection to the virtual machine mgmt01vdp51.lax01.rainpole.local.
- Log in using the following credentials. |Setting|Value| |:------|:----| |User name|root| |Password|vdp_root_password|
Restart all vSphere Data Protection services by running the following commands.
{#GUID-9375BFC7-9926-4240-8BB5-B87036182978__codeblock_2A776308D55A48E3AF9F79D887F966E3 .pre .codeblock} dpnctl stop all dpnctl start all
Run the addFingerprint.sh script to update the vSphere Data Protection server thumbprint displayed in the VM console welcome screen.
{#GUID-9375BFC7-9926-4240-8BB5-B87036182978__codeblock_E03D8C27F1EB4646B0825960A24E1E6B .pre .codeblock} /usr/local/avamar/bin/addFingerprint.sh
Parent topic: Replace the Certificate of vSphere Data Protection in Region B
Related tasks
Install a Manually Generated Certificate on vSphere Data Protection in Region B