Downloading and installing the VMware Public Key to validate a vCloud Director installation
search cancel

Downloading and installing the VMware Public Key to validate a vCloud Director installation

book

Article ID: 338745

calendar_today

Updated On:

Products

VMware Cloud Director

Issue/Introduction

The installation file for vCloud Director is digitally signed to secure your environment. To install the product, you must verify the signature by downloading and installing the VMware public key in your environment.
This article outlines how to download and install the VMware public key.


Environment

VMware Cloud Director 1.5.x
VMware Cloud Director 5.1.x

Resolution

You can use the Linux rpm tool and the VMware public key to verify the digital signature of the vCloud Director installation file, or any other signed downloaded file from www.vmware.com. If you install the public key on the computer where you plan to install vCloud Director, the verification happens as part of the installation or upgrade. You can also manually verify the signature before you begin the installation or upgrade procedure, then use the verified file for all installations or upgrades.

Note: The download site also publishes a checksum value for the download. The checksum is published in two common forms. Verifying the checksum verifies that the file contents that you downloaded are the same as the contents that were posted. It does not verify the digital signature.
To download and install the VMware public key:
  1. Obtain and import the VMware Packaging Public Keys.

    1. Create a directory to store the VMware Packaging Public Keys.
    2. Use a web browser to download all of the VMware Public Packaging Public Keys from the http://packages.vmware.com/tools/keys directory.
    3. Save the key files to the directory that you created.
    4. For each key that you download, run this command to import the key:

      # rpm --import /key_path/key_name

      Where key_path is the directory in which you saved the keys and key_name is the filename of a key

  2. (Optional) Use the Linux rpm tool to verify the digital signature of the downloaded file:

    # rpm --checksig installation-file

    After you verify the digital signature of the file, you can use it to install or upgrade vCloud Director on any server, without having to install the public key on that server. The installer warns you if no key is installed. You can ignore the warning if you already verified the signature of the file.



Additional Information

vCloud Director 1.5 のインストールを認証する為のVMware公開鍵のダウンロードとインストール