HP Insight Control Virtual Machine Management 7.3 User Guide

set the RequireCertificate parameter to 1 in thehpvmm.conf file, found in the following
location:
<VMM installation dir>/bin/hpvmm.conf
After enforcing the required certificate validation:
Obtain certificates by using the Microsoft Internet Explorer certificate cache
Export cached certificates to a local directory
Import the Host/vCenter certificates into the VMM Keystore
NOTE: The following instructions for obtaining, exporting, and importing host/vCenter
certificates given can be performed only with the Microsoft IE browser. The method to obtain
certificates varies with different browsers and different platforms.
To obtain certificates by using the Microsoft Internet Explorer certificate:
1. From Microsoft Internet Explorer, navigate to the VM host/vCenter Server web server by
using the HTTPS protocol: https://servername. A security alert message is displayed
with a warning regarding the certificate's certifying authority.
2. Select View Certificate to open the Certificate properties page.
3. Click Install Certificate to launch the Certificate Import Wizard. Retain the default setting,
Automatically select the certificate store based on the type certificate.
4. Click Next to continue installing the certificate.
5. Click Finish. A security warning message is displayed regarding the certificate's certifying
authority.
6. Click Yes to continue installing the certificate. The Certificate Import Wizard success
message is displayed.
7. Click OK on the certificate Import Wizard window. The Certificate properties page is
enabled.
8. Click OK in the certificate dialog box. The Security Alert message is displayed.
9. Click Yes in the Security Alert message to continue with the original HTTPS request for
the server. The server Welcome page is displayed. The certificate is now installed in the
Internet Explorer certificate cache.
10. Repeat the process for each host/vCenter Server that you will be registering in VMM to
enable secure communication.
To export the cached certificates to a local directory:
1. From the Internet Explorer Tools menu, select Internet Options.
2. Click the Content tab.
3. Click Certificates to open the Certificates manager.
4. Click the Trusted Root Certificate Authorities tab to display the list of trusted certificates.
This list should contain a certificate for each of the target servers selected as part of the
Obtain certificates by using, Microsoft Internet Explorer's certificate cache.
5. Scroll through the list of certificates to find the certificates.
For ESX and ESXi systems, the certificate name matches the DNS name of the server.
For vCenter Server systems, the certificate name is VMware.
22 Managing virtual machines