Thank you again Daniel,
That has worked. I can now deploy both SRM and vSphere Replication appliances with certificates that are signed by my Enterprise CA.
I can also import the Root CA and both VMCA subordinate CA certificates into each appliance, so there are no more trust warning messages when pairing sites/etc.
I really appreciate your help.
M