SSL certificates took on an important role in vSphere 5.1, and managing the certificates that the vSphere environment required became another challenge that vSphere administrators needed to tackle.
So I have a vCenter with two hosts that all live on a private management network. The vCenter is running its self-signed stuff. I wanted to replace them with real certs from my CA. It was already fun ...