6.0.3

Table Of Contents
Option Description
--privkey <key_file>
Name of the private key le. This le must be in PEM
encoded format.
--server <server>
Optional name of the VMCA server. By default, the
command uses localhost.
Example:
certool --rootca --cert=root.cert --privkey=privatekey.pem
certool --getdc
Returns the default domain name that is used by vmdir.
Option Description
--server <server>
Optional name of the VMCA server. By default, the
command uses localhost.
--port <port_num>
Optional port number. Defaults to port 389.
Example:
certool --getdc
certool --waitVMDIR
Wait until the VMware Directory Service is running or until the timeout specied by --wait has elapsed.
Use this option in conjunction with other options to schedule certain tasks, for example returning the default
domain name.
Option Description
--wait
Optional number of minutes to wait. Defaults to 3.
--server <server>
Optional name of the VMCA server. By default, the
command uses localhost.
--port <port_num>
Optional port number. Defaults to port 389.
Example:
certool --waitVMDIR --wait 5
certool --waitVMCA
Wait until the VMCA service is running or until the specied timeout has elapsed. Use this option in
conjunction with other options to schedule certain tasks, for example, generating a certicate.
Option Description
--wait
Optional number of minutes to wait. Defaults to 3.
--server <server>
Optional name of the VMCA server. By default, the
command uses localhost.
--port <port_num>
Optional port number. Defaults to port 389.
Example:
certool --waitVMCA --selfca
vSphere Security
122 VMware, Inc.