usually vCenter generates the certificates for the connected ESXi hosts. This is done by the VMCA and can be triggered by the vCenter GUI => Browser to the ESXi Host -> System -> Configure -> Certificate -> Renew.
To generate a new ESXi Host certificate, which is used for https connections at TCP/443 and for the CIM service TCP/5989, a script is located in /sbin.
Continue reading ESXi: Generate a new selfsigned host certificate
Advertisment to support michlstechblog.info
these are the steps to install own certificates on an ESXi host.
Continue reading ESXi: Install a custom certificate
if your ESXi host is on a version
host returned esxupdate code -1
and on the host
~ # cat /var/log/esxupdate.log | grep ERROR
ERROR: esximage.Errors.InstallationError: This upgrade transaction would skip ESXi Base Image VIB(s) VMW_bootbank_i40en_22.214.171.124-1vmw.703.0.0.49537716, which could cause failures post upgrade
Continue reading ESXi: Update to ESXi 7.0.3 failed
if you want to check the state of the TPM chip use the esxcli command line interface:
Continue reading vSphere: Check the ESXi TPM module state
Error description: You have downloaded a virtual machine from a vSphere instance via ovf export and it won’t start due to:
Bluscreen: SYSTEM THREAD EXCEPTION NOT HANDLED
Continue reading VMware Workstation: Downloaded ovf template does not boot: SYSTEM THREAD EXCEPTION NOT HANDLED