To allow secure connection to the cross-region Workspace ONE Access cluster, import the certificate for the virtual IP address in the Management domain NSX Manager.


  1. In a Web browser, log in to vCenter Server by using the vSphere Client.
    Setting Value
    URL https://sfo01m01vc01.sfo01.rainpole.local/ui
    User name administrator@vsphere.local
    Password vsphere_admin_password
  2. In the Networking and security inventory, click NSX Edges.
  3. From the NSX Manager drop-down menu, select
  4. Click the ID of the sfo01m01lb01 edge services gateway to open its network settings.
  5. Click the Configure tab and click Certificates.
  6. Click Add and select Certificate.
  7. In the New certificate dialog box, enter these settings, and click Add.



    Certificate contents

    Paste the content of the wsa01svr01.2.chain.pem file without the private key.

    Private key

    Paste the content of the wsa01svr01.key file.




    Certificate for the cross-region Workspace ONE Access cluster.