You can replace the certificate for the vCenter Cloud Gateway Appliance when the certificate expires or when you want to use a certificate from another certificate provider.
Prerequisites
Use this method of replacing the certificate only after Hybrid Linked Mode is enabled. If you need to replace the certificate on a vCenter Cloud Gateway Appliance without Hybrid Linked Mode enabled, see #GUID-BCF6FCFD-965C-4B18-B8B3-F5AB2F687D3A.
Generate certificate signing requests (CSRs) for each certificate you want to replace. Provide the CSR to your Certificate Authority. When the Certificate Authority returns the certificate, place it in a location that you can access from the vCenter Cloud Gateway Appliance.
Procedure
What to do next
When the certificate is successfully replaced, restart all services on the vCenter Cloud Gateway Appliance. See https://kb.vmware.com/s/article/2109887.