## View Certificate Information 1. Navigate to SDDC Manager UI 2. `Inventory -> Workload Domains` 3. click on `Certificates` 4. View certificate status ## Replace Certificates using OpenSSl CA 1. Configure OpenSSL in SDDC Manager 1. Navigate to `Security -> Certificate Authority` 2. Configure OpenSSL settings 1. FQDN 2. Organiztion, State, Country defails etc. 3. Save the Configuration 2. Generate CSRs 1. Go to `Inventory -> Workload Domains -> Certificates` 2. Select the resource vCenter,NSX, SDDC Manager and click `Generate CSR` 3. Provide details 3. Generate Signed Certificates 1. Select the component 4. Install Certificates 1. click `install certificates` to replace self-signed certificates with openssl-signed certificates ## Replace Certificates using Microsoft CA 1. Integrate SDDC Manager with Microsoft CA 1. Navigate to `Security -> Certificate Authority` 1. `CA Server URL` 2. `Service Account` credentials for CA 3. `Template Name` Template for vSphere Components created in Microsoft CA 2. Generate CSRs 1. Use SDDC Manager to genreate CSRs for vCenter, NSX and SDDC Manager 3. Submit CSRs 1. Submit the CSRs and obtain the Microsoft CA signed certificates 4. Install CSRs 1. Replace self-signed certificates in SDDC Manager ## 🔗Resources