Configure Enterprise CA in VCF Operations 9.1

This article is on how to Configure Enterprise CA (Certificate Authority) in VCF Operations version 9.1 under Fleet Management

First, Login into your VCF Operations Manager and click on Manage option on the right side of the page, Click on Fleet Management on the left hand side, click on Certificates option, then on the right side of the page, click on VCF Management and then click on the option “Configure CA for Fleet” as shown in the screenshot below.

Fill in all the details of your Enterprise Certificate Server including the credentials to access the certificate server with permissions for that account to generate the certificates in the CA.

NOTE: Make sure that your CA supports https (Port 443) as the VCF Ops only supports https:// and NOT http

NOTE: The CA URL should be in the format https://<CA_Server_Name>/certsrv

Once its done, Click on Save to complete the configuration. Make sure the template name is Exactly what is configured on the Cert Server. It is case sensitive.

This will configure the CA for Fleet Management in VCF Ops.

You will need to configure the Enterprise CA according to this Doc — Install-microsoft-certificate-authority-roles-9-0

In the next article, we will see on how to generate certificates from the Certificate Authority which we added and how VCF Ops implements the certs on the VCF Products