To fulfill load balancer or proxy requirements, you can change the default endpoint Web addresses for the vCloud Director Web Portal, vCloud API, and console proxy.

If you deployed the vCloud Director appliance, you must configure the vCloud Director public console proxy address, because the appliance uses a single IP address with custom port 8443 for the console proxy service. See Step 6.

Prerequisites

Only the system administrator can customize public endpoints.

Procedure

  1. From the main menu (), select Administration.
  2. In the left panel, under Settings, click Public Addresses.
  3. Click Edit to customize the public endpoints.
  4. To customize the vCloud Director URLs, edit the Web Portal endpoints.
    1. Enter a custom vCloud Director public URL for HTTP (non-secure) connections.
    2. Enter a custom vCloud Director public URL for HTTPS (secure) connections and click Upload to upload the certificates that establish the trust chain for that endpoint.
      The certificate chain must match the certificate used by the service endpoint, which is the certificate uploaded to each vCloud Director cell keystore with alias consoleproxy. SSL termination of console proxy connections at a load balancer is not supported. The certificate chain must include an endpoint certificate, intermediate certificates, and a root certificate in the PEM format without a private key.
  5. (Optional) To customize the vCloud REST API and OpenAPI URLs, turn off the Use Web Portal Settings toggle.
    1. Enter a custom HTTP base URL.
      For example, if you set the HTTP base URL to http://vcloud.example.com, you can access the vCloud API at http://vcloud.example.com/api, and you can access the vCloud OpenAPI at http://vcloud.example.com/cloudapi.
    2. Enter a custom HTTPS REST API base URL and click Upload to upload the certificates that establish the trust chain for that endpoint.
      For example, if you set the HTTPS REST API base URL to https://vcloud.example.com, you can access the vCloud API at https://vcloud.example.com/api, and you can access the vCloud OpenAPI at https://vcloud.example.com/cloudapi.
      The certificate chain must match the certificate used by the service endpoint, which is either the certificate uploaded to each vCloud Director cell keystore with alias http or the load balancer VIP certificate if an SSL termination is used. The certificate chain must include an endpoint certificate, intermediate certificates, and a root certificate in the PEM format without a private key.
  6. Enter a custom vCloud Director public console proxy address.
    This address is the fully qualified domain name (FQDN) of the vCloud Director server or load-balancer with the port number. The default port is 443.
    Important: The vCloud Director appliance uses its eth0 NIC with custom port 8443 for the console proxy service.
    For example, for a vCloud Director appliance instance with FQDN vcloud.example.com, enter vcloud.example.com:8443.
    The vCloud Director uses the console proxy address when opening a remote console window on a VM.
  7. To save your changes, click Save.