You can import a certificate from a trusted certificate authority when you are logged in to an ESXi host with the VMware Host Client.

Procedure

  1. Click Manage in the VMware Host Client inventory and click Security & Users.
  2. Click Certificates and click Import new certificate.
  3. Generate a certificate signing request, which is either an FQDN signing request or an IP signing request.
    The certificate signing request is then passed to the certificate authority to generate the official certificate.
    An FQDN request has the fully qualified hostname of the host in the resulting common name field of the certificate. The IP signing request has the current IP address of the host in the common name field.
  4. Paste a PEM formatted certificate in the certificate text box and click Import.
    You do not have to import the certificate immediately but you cannot reboot the host between generating the certificate signing request and importing the certificate.