SSL certificates on the desktop HTML access

I am configuring access HTML and try to correctly configure SSL certificates on the VDI desktops in a linked Clone pool.  Documentation, VMware wants us to install a unique certificate for each desktop computer that will be a pain and from what I see, is impossible.  Does anyone have an easy solution for this?  The main problem that I notice, is that the IP Office address is what actually shows in the URL.  How an appropriate certificate can be created with a DHCP address he will change all the time?  Any guidance will be appreciated.

Connect via a connection or a security server the value "use secure gateway" for HTML.  Only cert is the entry door.

Tags: VMware

Similar Questions

  • Setting the SSL certificate for the web user interface

    How can I configure the SSL certificate for the management of a SG300 interface? I don't seem to find the configuration option in the web gui?

    Hello Dirk,.

    For import / create / modify h99350 ssl please go to ' ' security > SSL server > SSL server authentication settings.

    HTTPS is enabled by default.

    Thank you and best regards,

    Siva

  • Pre complains about SSL certificate on the exchange server

    Hello.  I just got a pre and tries to set up to communicate with an exchnage server.  Pre complains and will not set up the connection with this error message: «"SSL certificate error.» Is the date and time correct? ».  The date and time are correct, but the server is running a self signed certificate.  This causes no problems with iPhones that use a lot of people here.

    How can I fix it?  It is not all parameters for this problem.

    I spent the weekend trying to test and understand what was going on.  I found that if I nominated the e-mail server (name after HTTPS: / / in Setup) the same as the name of certificate displayed in the Certificate Manager (Launcher > Device Info > more info > Menu > Certificate Manager), the error should disappear.  The problem for me was that the name of cert in cert Manager was different from address of mail server (in my case server. [domain .local] instead of mail. ([Domain_name] .com).  The transformation it seems to use is:

    (1) find the certificate...

    (2) CN is HTTPS: / / in the installer?

    (3) If no, use error 'Verify the certificate, date and time not correct' (or whatever it is) - If Yes, go to HTTPS: / /.

    (4) Exchange requires safety pin?  If no, proceed to synchronize - if so, use error "unsupported of security policies.

    So I looked more closely CERT and it held several common names (CN) for the cert.  It seems that ANY OTHER DEVICE can filter through the list of common names, and use the one that works.  The Pre uses only (whether first or last, I don't know).

    So, there are two options for the certificate problem (I guess the 3rd is that you can return the phone):

    FIRST SOLUTION

    =====================

    (1) check the name of cert in cert Manager.

    (2) if it is a name that can be resolved DNS (i.e.  [mail]. [mywebsite]. [com]) then change this setting in your exchange installation program in the mail server field beside the HTTPS: / /.

    This will only fix it if your COMPUTER administrator has with permissions on the used field.  It is possible that an alias is used on other areas

    SECOND SOLUTION (as I have done)

    =================================

    (1) ensure that your Certification Authority is installed.  You can do it by clicking START > ADMINISTRATIVE TOOLS > CERTIFICATION AUTHORITY - OR - on a computer on your network using IE/Safari/Firefox and typing http://server/certsrv.  If the page is found, then you are installed, if not, then you will need to have installed.

    NOTE: SBS 2003 WILL AWARD A CERT TO THE IIS WITHOUT THE ROOT CA.  THIS SEEMS TO BE THE PROBLEM WITH THE AUTO CERTS GENERATED I HAD

    (2) If you have not installed it, go to this topic, it is well written to get step by step instructions how to install, create demand for cert, create the cert and install the cert (it took me about 30 min).   http://www.MSExchange.org/tutorials/SSL_Enabling_OWA_2003.html

    NOTE: IF YOU ALREADY HAVE A CERT ON IIS, YOU NEED TO REMOVE IT AS IT IS "DEFECTIVE" CERT BEFORE YOU CAN REQUEST A NEW CERTIFICATE.  YOU MAY BE ABLE TO REINSTALL OVER THE NEW CERT, BUT I DON'T KNOW

    (3) open https://mail.domain.com/exchange on your computer - display details of the cert and save the file on your desktop - if you are using a laptop, you can also install it on your laptop to use for use outside the Office (this is also a good back-up that you can use to get more later if needed again).

    (4) plug your pre in USB mode.

    (5) slide the cert and unplug the USB cable

    (6) go to cert Manager

    7) tap on the icon of "Sun" at the bottom left

    (8) press on the new file cert that you save in USB mode

    (9) to confirm that the new cert appears with the name of the correct mail server

    10) go to the e-mail program and configure the exchange account

    The above will create a REAL root cert (not IIS domain root Cert) that the Pre can work with.

    Really, I don't know that how/why Palm overlooked this possibility because they claimed so-called does not want to sell to companies who need strict security requirements.  For me, it means a small / medium company that has limited IT supports (according to the needs, pay as you or green guy with limited knowledge).  Then, why they test the GER in this environment, I'm not sure.  I bet they were tested on their own network, which has all the correct methods, best practices for the management of cert.  I guess it's like the developers that they have offended and almost lost their support until turned it over and said: 'sorry, we really want make you programs for our platform WebOS. ".  We've just been paranoid for so long salivate us when the bell rings. "They just didn't beta test this well enough.  The sad result of this is that Sprint will have to address all of the sheets because this certificate simple reading process was given only minimal recognition capabilities.

    But having said that - I'm now completely in love with my pre!

    I'm happy to try to help if you need it.  I found a lot of the forum of solutions were not enough detailed, so do not hesitate to contact.

  • Help generate the SSL certificate for the Security Server

    Hi people,

    We have server (ss - 01.mydomain.local) security and connection server (cs - 01.mydomain.local). Now intend to install a certificate on the Security server. What should be the common name.

    our Web site is something like access.mydomain.local.

    Also, we plan to install SSL only on security for internet access server, this will affect the internal users, access to the connection to the server.

    Thanks and greetings

    J P Raj

    Take a look at the link below

    https://pubs.VMware.com/horizon-view-60/topic/com.VMware.ICbase/PDF/horizon-view-60-scenarios-SSL-certificates.PDF

    Internal users will not be affected when you install the Security server certificates

    Simply create a CSr file > get certificates and import them to the Security server in the MMC guide explains practically everything. If you already have certificates wildcard certificates, then you can follow the sub process

    (a) export the server certificates

    (1) to connect to the server that has certificates

    (2) for this server to export it to a PFX format certificate.

    (3) open the Microsoft MMC Certificates snap-in for the computer account.

    4) navigate to certificates (Local computer) > personal > certificates.

    (5) right-click on the signed certificate that is to be exported.

    6) click all tasks > export.

    (7) on the Welcome screen, click Next.

    8) click Yes, export the private key.

    (9) if it is an option, click on include all certificates in the certification path.

    (10) enter a password for the private key. This is required for the import certificates.

    (11) to enter a file name and location. For example, C:\certificates\certificate.pfx.

    12) click Next.

    13) click Finish.

    b) import it to the use of broker or planned connection securityr.

    Certificates of thye 1) import (preferable Pfx format) for the server broker or planned connection security.

    (2) open the Microsoft MMC Certificates snap-in for the computer account.

    3) navigate to certificates (Local computer) > personal > certificates.

    (4) right-click the certificates.

    5) click on Import.

    (6) through the pfx and click Next.

    (7) enter the certificate password.

    (8) select Mark keys as being exportable.

    9) click Next.

    10) click Finish.

    (c) restart Consulting Services

    To restart the services:

    Log in as an administrator on the server that is running the Server VMware View connection server VMware View connection or VMware View Server Security.

    Click Start > run, type services.msc and press ENTER.

    In the list of services, right-click on the VMware View connection Server or VMware View Server Security service.

    Click on restart and wait for service to stop and start.

  • What everyone uses for an SSL certificate on the wireless controller?

    If I use the SSL certificate generated locally on my WLC Internet Explorer always shows the "untrusted cert alert" when users try to authenticate through the web interface. What can I do to fix this do I need to buy a cert? If so where is the best and the best place to do this? GoDaddy? Also, I bought one for my mail server and had set a domain during the process name. What should I use for my WLC? The URL during the authentication process web show https://1.1.1.1

    RapidSSL is your best bet. It is less than $90 for 1 year with renewal and insurance. 5 years is like $ 380. GoDaddy will not work because they use chained certificates.

    On the VIP, you enter the DNS domain name as what you used on the certificate CN when generating a csr. Of course, you have to solve the CN name to 1.1.1.1 or change the 1.1.1.1 to another ip address that is not on your network. Restart the wlc and your done.

  • ODSEE 11 g and SSL certificate on the cascade replication topology

    Hi all

    I try to activate SSL on the replication topology cascade Department 11g with 4 cases including 1 hub.

    Can I use a multi server SSL certificate to spread on all servers?

    Any tips?

    Thanks in advance.


    Eugene

    Hello Eugene,

    Yes, it should work.

    Either ask a multiple server of your CA certificate and import it on Department via PKCS12

    or generate a CSR with a subjectAltName with certutil.

    If I remember correctly, add another name of subject certificate is possible on the side this even if it is not present in the request of cert,.

    -Sylvain

    ------

    Please check the response as useful or correct when it is appropriate to make it easier for others to find

  • SSL certificate for the Security Server external facing

    Dear all,

    Today, I bought an external SSL certificate of DigitCert for our security server. I imported the certificates in the personal certificate (computer account) on the Security Server store. DigiCert provided three certificates, root CA, CA server and the other with the name of our domain. I renamed the vdm to the friendly name of the existing self-signed certificate and used the friendly name for the certificate vdm has our domain name. Subsequently, I rebooted consulting on the Security server. They are all released on except the "Display Blast Secure Gateway" service which entered the suspended state.

    On our facility, we have a connection to the server and a security server. To the Security Server, we use a different domain name for connecting to the server. We have an internal PKI and the connection to the server uses an SSL certificate.

    connection to the server = server01.internaldomain.com

    Security Server = server02.externaldomain.com

    Why the certificate cannot be loaded to view Blast Secure Gateway? I missed something?

    Thank you

    Edy

    I solved it. It was with the private key of the certificate. This is the reason that the Blast Secure Gateway could not load.

  • Bad SSL certificate on the server to dial

    I recently upgraded from 5.2 view see 6.0 and now my composer Cert Server is bad.  Because of this, I can't not recompose pools.  When I try to run sviconfig-operation = ReplcaeCertificate I get an error that says: 'access denied '.  I am currently connected with privileges field and tried different users with the same message.  Can someone tell me how to go beyond this?  Thank you

    Perry

    Do not take into account.  I got it fixed.  Even though I was logged in as an administrator, I had to run elevated command line.  Everything is good.  Thanks for the research.

  • Cannot save vSphere Web Client after the replacement of the SSL certificate

    Hi all

    I have followed the Articles of Derek Seaman on the replacement of all the certificates in vSphere 5.1 and have since turned to the VMware KB Articles. I replaced the certificates for the SSO, the inventory Service and vCenter Server with no problems (other than having to use OpenSSL-Win64 for vCenter certificate that I could not get the x 86 version certificate of work, makes no sense, but I'll take the small victory).

    If you follow the guide of vmware to replace the web service certificate, http://kb.vmware.com/selfservice/microsites/search.do?cmd=displayKC & docType = kc & docTypeID = DT_KB_1_1 & externalId = 2035010, I get to step 12, enter the VMware vSphere Client Web back to vCenter Single Sign On and the following error:

    ##########################

    D:\Program Files\VMware\Infrastructure\vSphereWebClient\SsoRegTool > regTool.cmd registerService - cert "C:\ProgramData\VMware\vSphere Web Client\ssl" - ls - url ( https://(Server URL): 7444/lookupservice/sdk - username admin@system-domain - password (password) - dir 'D:\Program Files\VMware\Infrastructure\vSphereWebClient\SsoRegTool\sso_conf' - ip "*." ' * ' - serviceId-file 'D:\Program Files\VMware\Infrastructure\vSphereWebClient\serviceId'

    No file properties not found
    Initialization of provider of record...
    SSL certificates for https://vsphere.au.ray.com:7444/lookupservice/sdk
    SSL certificates for https://vsphere.au.ray.com:7444 / sso-adminserver/sdk
    Unhandled exception trying to escape: null
    Return code is: OperationFailed
    100

    ##########################

    VMware technical support suggested I uninstall all components, delete all databases and try again. I have done this and have exactly the same result.

    Has anyone seen elsewhere or managed to solve?

    Chris

    So, I managed to solve this problem. Not sure that this applies to everyone, but my problem was caused by registering using among other names of the subject in the SSL certificate for the SSO rather than the common name of the certificate.

    For example, the server name is server1.company.com. It is the common name of the certificate. But one of SAN of the certificate has been "vSphere.company.com".  If I used this other name in one of the component records that they would fail. I found that I have to use the common name. Even if the alternative names of job access to via your browser web, there is no certificate warning, if the registration of components using these names, it would fail.

    It seems crazy that you can use any of the San... then why allow us to make?

    Initially, I tried to replace the authentication certificate ONLY when the town was called vsphere.company.com, rather than the hostname of the server, and which is installed. However, try to install the Web Client would fail. When you come to the step where you have to accept the certificate of SSO, the installation fails because the common name of the certificate does not have the host name of the SSO server. It seems insane to me... why the host name of the server running the SSO should still come in when all calls are over HTTPS is simply absurd!

    I confirmed this with VMware Technical Support and they checked my conclusions.

  • Update the SSL certificate on a security server?

    Good afternoon everyone,

    I'm trying to update the SSL certificate on the server of our security, but I'm running into some problems.

    DigiCert (we get our certs of), not like the VMWare KB article order to request a 2048-bit crt, so we used their tool to generate our a commandsfor us:

    keytool - genkey-server alias - keyalg RSA - keysize 2048, FULL domain name -.jks keystore - dname 'CN = CNNAME, OR = OUNAME, O = ONAME, L = NAME, ST = STNAME, C = CNAME'

    keytool-certreq alias server-file FQDN.csr - FULL.jks domain name

    (I did not show the exact details of the CN name, etc.)

    It makes the keystore a .jks instead of a .p12

    Should this cause problems?


    Because after I imported the cert in the keystore, change the config locked file to reference the key file and restart the Server Security Service, it does not restart properly. (Defining the locked towards the old works fine keystore file, then restarting the service works find though.)

    This documented error in Event Viewer:

    Not able to create the com.vmware.vdi.ice.server.JMXServer.main(SourceFile:211) MBean server
    javax.management.MBeanException: Exception thrown in the startServer operation
    at com.sun.jmx.mbeanserver.StandardMetaDataImpl.invoke(StandardMetaDataImpl.java:435)
    at com.sun.jmx.mbeanserver.MetaDataImpl.invoke(MetaDataImpl.java:220)
    at com.sun.jmx.interceptor.DefaultMBeanServerInterceptor.invoke(DefaultMBeanServerInterceptor.java:815)
    at com.sun.jmx.mbeanserver.JmxMBeanServer.invoke(JmxMBeanServer.java:784)
    at com.vmware.vdi.ice.server.JMXServer.main(SourceFile:209)
    at sun.reflect.NativeMethodAccessorImpl.invoke0 (Native Method)
    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
    at java.lang.reflect.Method.invoke(Method.java:585)
    at net.propero.workspace.windowsinfrastructure.tunnelservice.TunnelService.run(SourceFile:34)
    at java.lang.Thread.run(Thread.java:595)
    Caused by: java.lang.Exception: ice beginning: null
    at com.vmware.vdi.ice.server.Ice.startServer(SourceFile:695)
    at sun.reflect.NativeMethodAccessorImpl.invoke0 (Native Method)
    at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)
    at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)
    at java.lang.reflect.Method.invoke(Method.java:585)
    at com.sun.jmx.mbeanserver.StandardMetaDataImpl.invoke(StandardMetaDataImpl.java:414)

    Should I request/pay for a new cert so my base keystore is .p12 instead of .jks?

    Hello

    I think that the command you mentioned creating a CSR only. You get a digicert certificate after sending this rea and create a keystore with whom?

    Please follow the steps in this KB to complete the whole process.

    http://KB.VMware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalID=1008705

    -noble

  • Problem with HTML access

    Hi all

    first of all, I am french, sorry for my bad English

    I am installing a VMware View (6.0.1) solution, I deploy servers of the company I work (on Windows 2008 R2):

    -on the same domain (horizon.local):

    -Server connection-see: 172.16.15.1/24

    -Server view composer: 172.16.15.3/24

    -a Server Active Directory: 172.16.15.2/24 with a DHCP server

    -free domain name:

    -Security Server see: 172.16.15.14/24 and 194.3.x.x/24 (public IP address to external access). In this server, I installed an SSL certificate for the FULL domain name corresponds to public IP address.

    Between 172.16.15.100/24 and 172.16.15.200/24 ip address AND virtual desktops (Windows 7 Pro, see agent installed and installed the html access).

    So my problem: when I'm at home and try to connect to the Security Server (the FULL domain name is horizon.mycompany.net), everything is ok. I write my user and password, it's ok. The pool to allow it there but when I click on the pool, in the navigation bar on google Chrome, the FULL domain name has been replaced by the virtual IP address of office: 172.16.15.101, so when I'm at home I can not be connected (because of the private address).

    Anyone know how I can keep public IP address all the time?

    Thanks for all, if you want more information, just a wonder.

    Tom

    Are you able to connect to desktops using PCoIP and HTML access when it connects directly to the login server?  If it is successful, the connection to the server is fine.

    Regarding the security servers, there is a 1:1 relationship between security servers and connection.  This means that if you have 2 security servers, you should have 2 servers connection.  Since you have a connection to the server, I recommend the deletion of unused security server.  This is possible by running the command: vdmadmin-s-r-s unknown of the connect to server command line.

    The image that you attached previously called a security server - WIN-SECURITYSER modifier has WIN-SECURITYSER as server name.  Security servers listed in administrator mode are WIN-QIP6105UM7 and Innoconnu.  I believe that when you change the name of a security server, it will update in administrator mode, but not on the field a security server modifier.  Since WIN-T2JSQ1T05IQ and WIN-QIP6105U0M7 seem to be names of default host and unknown is unknown (in English), I wonder if unknown was once WIN-SECURITYSER.

    If delete unknown does not resolve the problem, it may be necessary to remove and reinstall the Security server on WIN-QIP6105U0M7 software reinstall to ensure that it pairs correctly with the connection to the server.

  • SSL certificate

    Hello

    I would like to install a valid certificate on our VirtualCenter Server (at the moment we have a certificate expired, unrecognized) in order to use the Infrastructure Web Access virtual VMware.

    I read this article: http://www.vmware.com/pdf/vi_vcserver_certificates.pdf and it provides that, in order to change the certificate I have to stop every VM in each server (we have 14 blades with about 80 machines running). Is that absolutely necessary?

    All I want to do is to install a certificate exclusively for use of web access interface, I don't want to change the certificate on the ESX computer too. Is that absolutely necessary?

    Thank you

    Roberto.

    The following will happened when changing the SSL certificates on the vCenter.

    -The Service cannot connect to the database more because the crypt password is not the same more. The difficulty you have to run "vxpd Pei" on the control interface

    -IIRC a similar problem ends with, if you use customization templates

    There are no effects with the ESX. If your SSL certificate is based on an auto create RootCA you need to import the data into your Windows certificate store (RootCAs trust).

    Concerning

    Joerg

    "" Remember if you found this or other useful answers do not forget to assign points by scoring a useful or correct answer ".

  • Shortcut on the desktop of contacts in windows 7-windows live mail

    My new computer replacement provided with Windows 7 and Windows Live Mail installed as my email client.  I have been using it and it.  I was also put my contacts in the folder of Live Mail contacts within this program.  Since the file allows other information in addition to the email, I would like to use as my contacts folder by default/hand/don't touch that file, but I want to have a shortcut on the desktop to access the full file of contacts directly without having to open the complete e-mail program.  I tried in vain to drag a copy to the desktop, locate the program in live mail and create the shortcut to a file that opens the list of contacts.  I also noted and found a file of contacts under c/users/chick who looks like and contains the same information on a contact (it has the face of the same user) identical to the contacts in the folder of Windows Live e-mail but does not contain contact information that I already have in the program Live Mail and apparently isn't the same folder.  How can I create a shortcut on my desktop that opens just the contacts folder in the windows program live mail?  I could also ask the same question on the calendar in windows live mail.  Thank you, chick.

    Hello

    This problem is related to Windows Live Mail. Please post your question in the forum mentioned below link to improve the assistance:

    http://www.Microsoft.com/communities/newsgroups/en-us/default.aspx?DG=Microsoft.public.Windows.live.mail.desktop&cat=en_US_0405EAE1-3A5E-559F-59E6-B48513D5B57E&lang=en&CR=us

    Kind regards
    Amal-Microsoft Support.
    Visit our Microsoft answers feedback Forum and let us know what you think.

  • VUM 6.0, replacement of SSL certificates

    Hello

    VCSA device (6.0) external PSC

    VCenter VCSA device (6.0)

    VUM 6.0 (1 x R2 Windows 2012 running SQL 2014 and 1 x R2 Windows 2012 with VUM installed)

    Open root SSL and subordinate CA

    I replaced the certificates for the PSC with no problems, the VC and the hosts are all good :-)

    To replace the VUM SSL certificates, I followed KB 1023011 and replaced the self CERT signed with certificates signed by a subordinate CA OpenSSL. When I open the VI client and activate the VUM plugin I get a certificate error. If I open the PFX and import it into my personal cert store the complete chain, subordinate and root is here, and all are approved. If I navigate over https to another server where I replaced the SSL certificate with the one that was signed by the same CA browser isn't moaning.

    Issues related to the:

    1. the error indicates that my PC does not trust the cert or vCenter does not support the cert?

    2. If it is likely that the vCenter is not to trust the cert how to install the CA certificate root in the keystore on the vCenter? The PSC has already he is and trust her, otherwise she would not distribute certs kindly signed to esxi hosts.

    3. the cert that was issued for MUV has the VUM server's dns name in the part of the cert SAN but not in the issued to. Who is likely to be a problem?

    4. the CSR that has been generated for MUV did not come from the VUM server, instead, it was made from the workstation where he has installed OpenSSL. Who is likely to be a problem?

    As a side note KB 1023011 has no mention of being the right process for 5.5, 6.0 let alone!

    Thank you very much

    Girardot

    Hello

    I managed to solve this problem by adding intermediate CA on the end of the rui.crt.

    See you soon,.

    Girardot

  • VCenter Server 5.1 SSL certificate update - error

    Hi all

    We set up a new Windows 2008 R2 server as a vCenter Server 5.1

    Now, I try to install the new certificates for all parts of vCenter (server, inventory, web client service,...) with the Windows certification authority.

    I'm stuck at the update server certificate SSL vCenter with the 'Certificate SSL Automation Tool'.

    This is part 5. in this guide (5. the cmd screen shot):

    http://KB.VMware.com/selfservice/microsites/search.do?language=en_US & cmd = displayKC & externalId = 2041600 #updatestepsplanner

    All credentials are correct, but I still get the same error (vc-update - ssl.log):

    [26.04.2013 - 10:42:54, 99]: copy the new certificates and keys 'C:\ProgramData\VMware\VMware VirtualCenter\SSL. '... »
    [26.04.2013 - 10:42:55: 00]: creating the PKCS certificate file...
    Could not reload vCenter SSL certificates
    [26.04.2013 - 10:42:56: 22]: ""cannot reload the server vCenter SSL certificates. " The certificate could not be unique. » »
    [26.04.2013 - 10:42:56, 24]: new certificates and keys deleting...
    [26.04.2013 - 10:42:56: 25]: restoration of the certificates and the original keys...
    1 Datei () kopiert.
    1 Datei () kopiert.
    1 Datei () kopiert.
    [26.04.2013 - 10:42:56: 25]: attempt to restore...
    Could not reload vCenter SSL certificates
    [26.04.2013 - 10:42:57, 08]: ""cannot reload the server vCenter SSL certificates. " The certificate could not be unique. » »
    [26.04.2013 - 10:42:57: 10]: new certificates and keys deleting...
    [26.04.2013 - 10:42:57: 10]: restoration of the certificates and the original keys...
    1 Datei () kopiert.
    1 Datei () kopiert.
    1 Datei () kopiert.
    [10: 42:57, 13 - 26.04.2013]: failure of the update of the certificate of vCenter.

    So I tried the manual way, as it is mentioned in this guide:

    I'm stuck here too, get a 'result of Method Invocation: vpx.fault.SecurityConfigFault ' after ""Invoke method ': "

    1. Go to https://localhost/mob/?moid=vpxd-securitymanager & vmodl = 1 on the server vCenter Server and load the certificates for the configuration using the managed object browser.
    2. Click continue if you are prompted with a warning on this certificate.
    3. Enter a vCenter Server administrator user name and password when prompted.
    4. Click reloadSslCertificate.
    5. Click the calling method. If successful, the window displays this message: result of Invocation of method: Sub.


    I tried to fix this, but there is not really a solution for this:

    http://communities.VMware.com/thread/429035

    so, I need help with this question

    SOLVED!

    Steps to follow:

    1. stop the vCenter service

    2. search for your ID in LS_ServiceID.prop in the folder C:\ProgramData\VMware\VMware VirtualCenter

    3. copy this ID (e.g. {C4672589-9258-42B1-90E2-1EF268BBD402}: 5 )

    4. change your vpxd.cfg in the same folder and replace

    vCenterService

    with

    your ID

    5. start vCenter Service

    Then, the SSL automation tool works!

    You need to undo changes.

Maybe you are looking for