Replace the default or certificates that are about to expire on the ESXi hosts with certificates that are generated by using the CertGenVVD utility. By default, each new ESXi host is provisioned with a signed certificate that has VMware Certificate Authority as the root certificate authority.

About this task

In each cluster, before you replace the present certificates on a host, configure the certificate mode for hosts to support custom certificate authorities (CAs).