Manage certificates for VMware Aria Suite Lifecycle products
VMware Aria Suite Lifecycle
productsThe
VMware Aria Suite Lifecycle
Locker allows you to manage certificates
for the various suite products. You can manage certificates, including generate a new
certificate, for products that are deployed by VMware Aria Suite Lifecycle
. - Certificates that are about to expire in less than 15 days cannot be imported.
- To manage the certificate for an imported environment, add the certificate in theVMware Aria Suite Lifecycleand perform inventory sync so that the certificate is mapped to the imported environment, after which replace certificate and scale-out wizards will be aware of the existing certificate.
- From theVMware Aria Suite LifecycleMy Services dashboard, clickLocker.
- You can either selectGenerate,Import, orGenerate CSR.OptionDescriptionGenerate
- Enter the required text boxes.
- Select the length of the Key.
- Enter the validServer Domain/Hostname. You can also include the wildcard certificate. For example, you can enter*.sql.local.
- Enter theFQDNorIP Address.
- ClickGenerate.
Import- Enter a valid certificate name.
- In thePassphrasetext box, enter(if applicable).Cert-Password
- ClickBrowse Fileand browse to the saved PEM file.
- When you upload a PEM file, the private key and certificate chain details are populated automatically.
- Enter the private key and certificate chain details manually.
- ClickImport.
The requirements for PEM file are:- Both certificate chain and key must be in the same file.
- The PEM file that are imported can have 2048 bits key or 4096 bits key.
- If the PEM file certificate is encrypted then the passphrase must be provided while importing the certificate intoVMware Aria Suite Lifecycle.
Generate CSR- Enter the required text boxes.
- Select the length of the key.
- Enter a valid domain name. You can also include the wildcard certificate. For example, you can enter*.sql.local.
- Enter the IP address in which you are assigning the certificate.
Generate CSR downloads a PEM file. This file can be taken to the certificate authority for signing and can be made as a trusted certificate. The pem file downloaded will have the private key and certificate request chain. You must be cautious and share only the CSR part of the pem file but not the key for the certificate signing. - ClickGenerate.
- You can click the certificate from the inventory to view the details and its associated environments with their products.
- To download or replace the certificate, click the vertical ellipses on the certificate.
VMware Aria Suite Lifecycle
generates a new certificate for the
specific domain provided by the user.