2.5

Table Of Contents
ACE Management Server Administrator’s Manual
44 VMware, Inc.
4Replaceplaceholders<...>withthePostgreSQLdatabaseserverDNSnameor
IP addressandthedatabasenameofthisserver.
5Usethedefaultportnumberorsetadifferentportnumber.
6 Savethefile.
Afteryoucompletethistask,postgres_dsnappearsinthedropdownmenuonthe
DatabasetabintheACE
ManagementServerSetupapplication.
Prepare Custom Security Certificates
TousecustomSSLcertificates,eitheryourownselfsignedcertificatesorthoseofa
thirdpartyorinternalCA(certificateauthority),youmustprovidethecertificate,key,
and(inthecaseofCAs)certificatechainfiles.ThesefilesmustbePEMencoded.
Afteryoucreateorobtainthesefiles,upload
themtoACE ManagementServerbyusing
theCustomSSLCertificatestabintheACEManagementServerSetupapplication.
FormoreinformationabouthowVMwareACEusesSSLcertificates,see“UsingSSL
CertificatesandProtocol”onpage 21.
To prepare custom security certificates
1 Createorprovidetheneededfiles:
Foryourownselfsignedcertificate,usetheopensslutilitytocreateanew
selfsignedcertificate.
ForathirdpartyCAorinternalCA,obtainanSSLcertificatesignedbythat
CA,andacertificateverificationchainfile.
Thechainfileisaconcatenationofeverycertificaterequiredtoverifythenew
SSLcertificateyoucreatedorobtained.Stepsforobtainingthecertificatechain
vary,dependingon
whichhostoperatingsystemyouareusingandonthe
sourcefromwhichtheCAcertificateisobtained.
Aprivatekeyfile.SSLencryptsdatathroughtheuseofapublickeyand
privatekeypair.Thepublickeyisknowntoeveryoneandtheprivatekeyis
knownonlytothemessagerecipient.
ThecertificatesignaturesmustusetheSHA1algorithmdigest.Thefilesmustbe
PEMencoded.