User manual

Table Of Contents
Import Root and Intermediate Certificates for the HTML Access Agent
If the root certicate and intermediate certicates in the certicate chain are not imported with the SSL
certicate that you imported for the HTML Access Agent, you must import these certicates into the
Windows local computer certicate store.
Procedure
1 In the MMC console on the View desktop, expand the  (Local Computer) node and go to the
Trusted Root  Authorities >  folder.
n
If your root certicate is in this folder, and there are no intermediate certicates in your certicate
chain, skip this procedure.
n
If your root certicate is not in this folder, proceed to step 2.
2 Right-click the Trusted Root  Authorities >  folder and click All Tasks >
Import.
3 In the Certicate Import wizard, click Next and browse to the location where the root CA certicate is
stored.
4 Select the root CA certicate le and click Open.
5 Click Next, click Next, and click Finish.
6 If your server certicate was signed by an intermediate CA, import all intermediate certicates in the
certicate chain into the Windows local computer certicate store.
a Go to the  (Local Computer) > Intermediate  Authorities > 
folder.
b Repeat steps 3 through 6 for each intermediate certicate that must be imported.
What to do next
Congure the appropriate registry key with the certicate thumbprint. See “Set the Certicate Thumbprint
in the Windows Registry,” on page 15.
Set the Certificate Thumbprint in the Windows Registry
To allow the HTML Access Agent to use a CA-signed certicate that was imported into the Windows
certicate store, you must congure the certicate thumbprint in a Windows registry key. You must take this
step on each desktop on which you replace the default certicate with a CA-signed certicate.
Prerequisites
Verify that the CA-signed certicate is imported into the Windows certicate store. See “Import a Certicate
for the HTML Access Agent into the Windows Certicate Store,” on page 14.
Procedure
1 In the MMC window on the View desktop where the HTML Access Agent is installed, navigate to the
 (Local Computer) > Personal >  folder.
2 Double-click the CA-signed certicate that you imported into the Windows certicate store.
3 In the Certicates dialog box, click the Details tab, scroll down, and select the Thumbprint icon.
Chapter 1 Setup and Installation
VMware, Inc. 15