Update the certificate chain of VMware vRealize® Log Insight™ to use a trusted non-default certificate after deployment or to replace a certificate that is soon to expire. The connection to the vRealize Log Insight user interface remains trusted.


  1. In a Web browser, log in to vRealize Log Insight by using the user interface.
    Setting Value
    URL https://sfo01vrli01.sfo01.rainpole.local
    User name admin
    Password vrli_admin_password
  2. Click the configuration drop-down menu icon  and select Administration.
  3. In the left pane, navigate to Configuration > SSL.
  4. In the Custom SSL certificate section, next to New certificate file (PEM format), click Choose file, browse to the location of the sfo01vrli01.2.chain.pem PEM file, and click Save.
  5. Verify the custom certificate.
    1. Open a Web browser and go to https://sfo01vrli01.sfo01.rainpole.local
      A warning message that the connection is not trusted appears.
    2. Verify that Subject alternative name contains the names of the vRealize Log Insight cluster nodes.