6.0.1

Table Of Contents
Troubleshooting vCenter Server and ESXi Host Certificates
Certificates are automatically generated when you install vCenter Server. These default certificates are not
signed by a commercial certificate authority (CA) and might not provide strong security. You can replace
default vCenter Server certificates with certificates signed by a commercial CA. When you replace vCenter
Server and ESXi certificates, you might encounter errors.
vCenter Server Cannot Connect to the Database
After you replace default vCenter Server certificates, you might be unable to connect to the vCenter Server
database.
Problem
vCenter Server is unable to connect to the vCenter Server database after you replace default vCenter Server
certificates, and management web services do not start.
Cause
The database password must be updated in its encrypted form.
Solution
Update the database password by running the following command: vpxd -P pwd.
vCenter Server Cannot Connect to Managed Hosts
After you replace default vCenter Server certificates and restart the system, vCenter Server might not be
able to connect to managed hosts.
Problem
vCenter Server cannot connect to managed hosts after server certificates are replaced and the system is
restarted.
Solution
Log into the host as the root user and reconnect the host to vCenter Server.
New vCenter Server Certificate Does Not Appear to Load
After you replace default vCenter Server certificates, the new certificates might not appear to load.
Problem
When you install new vCenter Server certificates, you might not see the new certificate.
Cause
Existing open connections to vCenter Server are not forcibly closed and might still use the old certificate.
Solution
To force all connections to use the new certificate, use one of the following methods.
n
Restart the network stack or network interfaces on the server.
n
Restart the vCenter Server service.
vSphere Troubleshooting
40 VMware, Inc.