VMware CLOUD DIRECTOR 1.0 Configuration Manual page 16

Hide thumbs Also See for CLOUD DIRECTOR 1.0:
Table of Contents

Advertisement

Cloud Director Installation and Configuration Guide
3
Make a note of each IP address, the fully-qualified domain name associated with it, and whether you want
Cloud Director to use the address for the HTTP service or the Console Proxy service on this host.
You will need the hostnames when creating the certificates, and the IP addresses when configuring
network and database connections. Recording the information in a form like the one shown in
can make it easier to create the certificates and, later, configure network and database connections.
Table 1-13. SSL Certificate Information
Service Name
HTTP
Console Proxy
4
Create the certificates.
You can use signed certificates (signed by a trusted certification authority) or self-signed certificates.
Signed certificates provide the highest level of trust.
To create signed certificates, see
n
To create self-signed certificates, see
n
Create and Import a Signed SSL Certificate
Signed certificates provide the highest level of trust for SSL communications.
Each Cloud Director host requires two SSL certificates, one for each of its IP addresses, in a Java keystore file.
You must execute this procedure for each host that you intend to use in your Cloud Director cluster. You can
use signed certificates (signed by a trusted certification authority) or self-signed certificates. Signed certificates
provide the highest level of trust. To create and import self-signed certificates, see
Certificate,"
on page 18.
Prerequisites
Follow the procedure in
n
names and their associated IP addresses on this host, along with a service choice for each domain name.
You must have access to a computer that has a Java 6 runtime environment, so that you can use the
n
command to create the certificate. The Cloud Director installer places a copy of
cloud-director/jre/bin/keytool
runtime environment installed. Creating and importing the certificates before you install and configure
Cloud Director software simplifies the installation and configuration process. The command-line
examples assume that
as passwd.
16
IP Address
10.100.101.19
10.100.101.20
"Create and Import a Signed SSL Certificate,"
"Create a Self-Signed SSL Certificate,"
"Creating SSL Certificates,"
, but you can perform this procedure on any computer that has a Java
is in the user's path. The keystore password is represented in these examples
keytool
Hostname (FQDN)
foo.example.com
bar.example.com
"Create a Self-Signed SSL
on page 15 to generate a list of fully-qualified domain
Table 1-13
on page 16.
on page 18.
keytool
in
keytool
/opt/vmware/
VMware, Inc.

Advertisement

Table of Contents
loading

Table of Contents