6.7

Table Of Contents
Troubleshooting vCenter Server and ESXi Host
Certificates
Certificates are automatically generated when you install vCenter Server. These default certificates are
not signed by a commercial certificate authority (CA) and might not provide strong security. You can
replace default vCenter Server certificates with certificates signed by a commercial CA. When you replace
vCenter Server and ESXi certificates, you might encounter errors.
New vCenter Server Certificate Does Not Appear to Load
After you replace default vCenter Server certificates, the new certificates might not appear to load.
Problem
When you install new vCenter Server certificates, you might not see the new certificate.
Cause
Existing open connections to vCenter Server are not forcibly closed and might still use the old certificate.
Solution
To force all connections to use the new certificate, use one of the following methods.
n
Restart the network stack or network interfaces on the server.
n
Restart the vCenter Server service.
vCenter Server Cannot Connect to Managed Hosts
After you replace default vCenter Server certificates and restart the system, vCenter Server might not be
able to connect to managed hosts.
Problem
vCenter Server cannot connect to managed hosts after server certificates are replaced and the system is
restarted.
Solution
Log into the host as the root user and reconnect the host to vCenter Server.
Cannot Configure vSphere HA When Using Custom SSL
Certificates
After you install custom SSL certificates, attempts to enable vSphere High Availability (HA) fail.
Problem
When you attempt to enable vSphere HA on a host with custom SSL certificates installed, the following
error message appears: vSphere HA cannot be configured on this host because its SSL
thumbprint has not been verified.
vCenter Server and Host Management
VMware, Inc. 200