
In vSphere 7.0, a Harbor registry is deployed in a vSphere cluster with vSphere namespaces enabled. List Registries Harbor Projects Returns basic information of all projects in a Harbor registry.Ĭreate Registries Harbor Projects Creates a project in a Harbor registry using the supplied specification. Replace VMCA Signed vCenter TLS Replace MACHINE SSL with VMCA signed one with the given Spec.The system will go for restart. Renew vCenter TLS Renews the TLS certificate for the given duration period. Get vCenter TLS Returns the rhttpproxy TLS certificate. The above three scenarios are only supported from vsphere 7.0 onwards. The, and -cert must be provided as input.Īfter this operation completes, the services using the certificate will be restarted for the new certificate to take effect. When the certificate is signed by a third party certificate authority and the root certificate of the third party certificate authority is not one of the trusted roots in the trust store, this operation can replace the certificate, private key and root CA certificate.


The and (but not -cert) must be provided as input.ģ. When the certificate is signed by a third party certificate authority/VMCA and the root certificate of the third party certificate authority/VMCA is already one of the trusted roots in the trust store, this operation can replace the certificate and private key. The (but not and -cert) must be provided as input.Ģ. When the CSR is created and the private key is already stored, this operation can replace the certificate. This operation can be used in three scenarios :ġ. Set vCenter TLS Replaces the rhttpproxy TLS certificate with the specified certificate. If a third-party/custom certificate has been configured as the signing certificate for compliance reasons, refresh may take vCenter out of compliance. The certificate will immediately be used to sign tokens issued by vCenter token service. The new signing certificate will be issued in accordance with vCenter CA policy and set as the active signing certificate for the vCenter token service.

Refresh vCenter Signing Certificate Refresh the vCenter signing certificate chain. Operation execution requires CertificateManagement.Administer. Set vCenter Signing Certificate Set the active signing certificate for vCenter. Operation execution requires System.Read. If you do not have all of the privileges described as follows: Get vCenter Signing Certificate Retrieve the signing certificate chains for validating vCenter-issued tokens.
