6.5.1

Table Of Contents
vecs-cli store list
List certificate stores.
Option Description
--server <server-name>
Used to specify a server name if you connect to a remote VECS
instance.
--upn <user-name>
User Principle Name that is used to log in to the server instance
specified by --server <server-name> . When you create a
store, it is created in the context of the current user. Therefore,
the owner of the store is the current user context and not always
the root user.
VECS includes the following stores.
Table 42. Stores in VECS
Store Description
Machine SSL store (MACHINE_SSL_CERT)
n
Used by the reverse proxy service on every vSphere node.
n
Used by the VMware Directory Service (vmdir) on
embedded deployments and on each
Platform Services Controller node.
All services in vSphere 6.0 communicate through a reverse
proxy, which uses the machine SSL certificate. For backward
compatibility, the 5.x services still use specific ports. As a result,
some services such as vpxd still have their own port open.
Trusted root store (TRUSTED_ROOTS) Contains all trusted root certificates.
Platform Services Controller Administration
VMware, Inc. 163