Cisco VPN :: 871 - Import A Self Signed Certificate

Sep 27, 2012

Can I import a self signed certificate from a Cisco 871 router to a Cisco ASA 5505? The 5505 replaced the 871 and I have a VPN that goes to another company that we have a connect to. The device on the other end is a VPN concentrator ( I do not have access to modify this device without going through multiple channels.) I only need to mimic this device for the site to site VPN tunnel only. It appears that there are no pre-shared keys only a self signed certificate.         

View 1 Replies


ADVERTISEMENT

Cisco :: Can LMS 4.0 Use CA Certificate Instead Of Self-signed

Apr 4, 2012

I've been reading over the documentation, but only see instructions for using a self-signed certificate for SSL.  Or even trusted certificates between LMSes.  But I can't seem to find anything on LMS 4.0 using a Certificate Authority.  And I have a security requirement to do so.
 
Is this possible in LMS 4.0?

View 3 Replies View Related

Cisco :: ACS 5.3 / Self Signed / Certificate Base Authentication

Oct 17, 2012

Our ACS (5.3) has self signed certificate, we have exported it and declared it in Certificate Authorities.We have exported it to have a Trusted Certificate for client machine.
 
This certificat has been installed on a laptop.The wlc is successfully setup for eap (peap & eap-fast has been tested > ok)I have this error in the log:
 
12514 EAP-TLS failed SSL/TLS handshake because of an unknown CA in  the client certificates chain.I think the Access Policies (identity & authorization) are misconfigured: [code]

View 1 Replies View Related

AAA/Identity/Nac :: ACS V5.2 New Self Signed Certificate Not Showing In Browser

Nov 11, 2012

I have just renewed the self signed certificate on a v5.2 ACS and expiry date of 2013 is showing in the ACS GUI. However, when I start an ACS Admin session and view the certificate information in the browser it is showing the old expiry date of 2010. I have tried this in IE and Firefox and the certificate information is the same.
 
Is there a way I can get the browser to pick the new certificate ?

View 1 Replies View Related

Cisco :: 5508 Unable To Upload Signed Certificate

Jul 1, 2012

I have two Cisco WLC 5508 controllers that I'm trying to set-up for our new corporate WLAN. I've gone through most of the configuration fine but have ran into an issue uploading a signed certificate to one of my controllers. I should point out that I have managed to upload the certificate successfully to one of the controllers, I just can't seem to upload it to the second.The issue is as follows:
 
- I've logged into the controller, gone to Security -> Web Auth -> Certificate -> Download Certificate
- I've specified my tftp server details and selected apply
- the process begins and I can see through my tftp client that the controller is attempting to copy and install the certificate
- The controller tries to install the certificate but fails, reporting the same

View 9 Replies View Related

Cisco :: 2048 - Self-Signed Certificate And Init 6 Process

Feb 16, 2012

I have a doubt about CiscoWorks. I need to generate the self-signed certificate with a key of 2048 bits to generate a CA with VeriSign. CiscoWorks do this automatically with a key of 1024 bits and I do not find a form to elect a a diferent key. Is it possible to generate a certificate with 2048 bits key?

Another problem is that I have CiscoWorks installed on Solaris. Many times at day the web application does not work and the only way to recuperate it is with the command "init 6" and I have to way 15 minutes until I can have access again. Why is produced this error? Who can I fit it?

View 1 Replies View Related

Cisco Routers :: RV120W - Create New Unique Self-signed Certificate?

May 9, 2012

how to create new unique self-signed certificate on RV120W? I can create request for singning by external CA, but I cannot create new unique self-signed certificate itself.

View 2 Replies View Related

Cisco Wireless :: RV180W - Generate Proper Self Signed Certificate?

Dec 19, 2012

Right now the Self-signed Certificate on my RV180W generates errors as it was issued to the MAC address instead of the current IP address. Need instructions on Generating a Self-Signed certificate (or 1 from my Windows Server 2012 Certification Authority) that will eliminate the constant barreage of certificate errors I get when trying to access the management interface of my device?  the internal domain is mythos.local, netbios name of MYTHOS, and the device name in question is surtur.

View 2 Replies View Related

Cisco Routers :: Self-signed Certificate With RV220W And QuickVPN Client?

Nov 21, 2011

The establishment of IPSEC tunnel between the RV220 and QuickVPN client works properly with the security certificate of origin of the router.RV220 V1.0.3.5QuickVPN V1.4.2.1
 
Since the establishment of a security certificate self-signed, the RV220 and QuickVPN client refuses to work together .

Here are the log of the QuickVPN client

2011/09/27 12:45:14 [STATUS]OS Version: Windows 7
2011/09/27 12:45:14 [STATUS]Windows Firewall Domain Profile Settings: ON
2011/09/27 12:45:14 [STATUS]Windows Firewall Private Profile Settings: ON
2011/09/27 12:45:14 [STATUS]Windows Firewall Private Profile Settings: ON

[code].....

View 4 Replies View Related

Cisco VPN :: How To Import SSL Certificate To ASA 5510

Jun 3, 2012

Do you know the procedure of import SSL certificate from Godaddy to ASA 5510? attached is the drop-down list that I have to choose from.

View 5 Replies View Related

Cisco Firewall :: ASA5520 HTTPS SSL Certificate Signed Using Weak Hashing Algorithm

Oct 18, 2011

I am support one client for,  whom falls under Security  scans mandatory for new implementation of ASA 5520 device.  The client uses Nessus Scan and  the test results are attached.The Nessus scanner hit on 1 Medium vulnerabilities.

View 2 Replies View Related

Cisco :: Import Certificate Failed For 7925

Jul 24, 2011

I'm currently in the process of the setting up  a new wireless network and I want to test out our 7925 phones on it.  When I try uploading the certificate to the phone it fails and I find the following error in the trace logs
 
[code]...
 
I created this certificate using using Windows Server 2003 and it is 2048 bits.  This certificate works fine with my laptop but I'm unable to upload it to the phone.  The app load currently on the phone is CP7925-MFG-D.8.LOADS.  Are there any specific guidelines out there when creating a certificate for a Cisco 7925 phone?

View 2 Replies View Related

Cisco AAA/Identity/Nac :: Cannot Import Certificate To CSACS SE 4.2

Mar 2, 2009

I cannot import certificate from CA (Certificate Authority). When I attempt to install the certificate to CSACS SE 4.2, the following error occurs during installation: "Unsupported private key file format".

View 7 Replies View Related

Cisco Switches :: SPS2024 And SSL Certificate Import?

Feb 29, 2012

I am trying to import a SSL certificate into this device -  Cisco SPS2024 (FW: 1.0.6 ( date  30-Aug-2011 time  15:45:47 )) but without sucess. I have allready did this task on another models through CLI (Cisco SRW224G4 - through the lcli) or on Cisco SG300. I can create certificate request with:
 
switch(config)#crypto certificate 1 generate key-generate
switch#crypto certificate 1 request cn "sw.localdomain" or "..." ou "..." loc "..." st "..." cu "..."
 
and that last command  gives me plaintext certification request that I will sign with my certification authority. to this time, everything is clear and perfect.
 
And now, I have signed certificate according generated certificate request and I want to import it. And now I am in stuck, because I have not found any useful command to do this action. For import certificate, I have found only following command:
 
switch# crypto certificate 1 import pkcs12 WORD
 
also I dont exactly understand this command because there is no parameter to specify any url from which will be fetched pkcs12 certificate... just WORD parameter as the pkcs12 passphrase. nothing like as on another switch models on which there is following command:
 
switch2(config)# crypto certificate 1 import <CR>
 
after executing the command line will waiting for pasting the signed certificate to console. And on SPS2024 there is no any similar command to doing this. So in final, I cannot import certificate signed by my certificate authority, I can just generate self signed certificate directly on device and use only this one

View 2 Replies View Related

Cisco Application :: Certificate Import From Exchange To ACE 4700

Dec 8, 2011

I am tasked to Configure an ACE 4700 for SLB. This has been done and working. Am also further tasked to create a secure communication between tha ACE and Exchange server. I need the breakdown of steps required to Import certificate from the exchange server, and how to verify that things are working.

View 3 Replies View Related

Cisco Application :: ACE 4710 (1) SSL Certificate Import ( 2 ) With Load Balancing?

Dec 3, 2012

I am performing a deployment, in which i require clarity on the following. Our setup has DC and DR , in each site we have two devices for HA.We have received One SSL Certificate from Public CA, Kindly clarify the following doubts i have on thisIn Doc, i found Cert.pem and key.pem is required to generate the pair ,do i receive both Cert.pem and key.pem from the CA or we can generate key.pem from Cert.pem ?SSL Offloading is planned for the X application, and it is running in both DC and DR ( Considering each having their own Public IP address ) , do i need to have two different public certificates or a single certificate can i use in both DC and DR.Load Balancing IssueIs it possible to configure in ACE to access the service in Business hours and in non Business hours to display HTML page showing this is available only during these hours ?In DC we have Three Web Servers ( only in One physical server the service is active, other two are backup ), and these three servers are under cluster and shares one cluster IP , In ACE we have created the VIP and Pointed to only Cluster IP ( like pass through only ). The issue we face is if active web server is down, even then ACE is sending the traffic to that webserver only instead of sending it to the new Active web server. let us know if any solution is there to overcome this issue ?as per my understanding instead of giving cluster IP as real server IP we can issue the three physical servers. now i dont require load balancing between three servers instead require failover king like if first server is down then it should forward to Second server ?

View 4 Replies View Related

Cisco AAA/Identity/Nac :: %ASA-3-717009 / Certificate Validation Failed / Certificate Date Is Out-of-range

Jan 30, 2012

There is ASA with remote access VPN and users are authenticated using third party signed certificates (CA is not local in ASA).When user certificate expires i can see it in syslog messages. For example:
 
     %ASA-3-717009: Certificate validation failed. Certificate date is out-of-range, serial number: (...)
 
I would like to know if there is an opportunity to view user's certificate expiry date beforehand, say, 3 days before?

View 3 Replies View Related

Cisco AAA/Identity/Nac :: ISE 1.1.1 Don't Have Certificate Authority Certificate Anymore?

Oct 19, 2012

i am working on ISE 1.1.1, surprisingly i couldn't found certificate authority certifiate at certificate operation anymore.
 
would it be the change on GUI? So now where i can import the CA certificate to ISE?

View 5 Replies View Related

Cisco :: Upload Signed Certification To LMS 4.2.2

Oct 14, 2012

I would like to upload the signed certification to LMS 4.2.2.After checking ( 4. option ) I choosed the 6. option  and press "y" for questions and the perl script is freezing.  

View 2 Replies View Related

Cisco VPN :: Using A Publically Signed Cert On ASA 5505

May 1, 2013

I am wanting to use a cert signed by a digicert or verisign on my ASA so that anyconnect doesn't frreak out with the untrusted cert. I have created the CSR, and I uploaded the certificate, but it is still showing the old self signed untrusted cert.

View 5 Replies View Related

Cisco Firewall :: Installing Signed Certificates Into ASA 5510

Apr 18, 2012

I am running Cisco Adaptive Security Appliance Software Version 8.3(2) Device Manager Version 6.4(1).  This will be used as a VPN gateway.  I am having troubles installing our cert.  I can install the cert, but it never connects witht he correct key.  It references trustpoint0 when it is trustpoint1.  I deleted all trustpoints and it still happens.  That.vpngw4# sh run | begin rustcrypto ca trustpoint ASDM_TrustPoint0crl configurecrypto ca trustpoint ASDM_TrustPoint1keypair ASDM_TrustPoint0crl configurecrypto ca certificate chain ASDM_TrustPoint1certificate 0f8e62    308203d5.8c  quitI deleted both trust points and when I do a  sh run both are gone, but when I then import the cert (via ASDM) it creates trustpoint0 again.

View 3 Replies View Related

Cisco Security :: How To Renew Self-Signed ACS 3.3 Cert Used For PEAP

Mar 29, 2006

We currently are using a self-signed cert (for PEAP machine authentication) that was created on an ACS 3.3 appliance.  That cert was manually installed on our laptops when they were configured for wireless conenctivity.My problem is, that self-signed cert will soon be expiring and I am not sure what needs to be done to issue a new cert AND deploy it to my Windows XP Pro clients without a service interruption.  If possible, I'd like to leverage our exsiting AD infrastructure for this, but I need some direction, and time is of the essence!!

View 2 Replies View Related

Cisco AAA/Identity/Nac :: 7925 ISE Cannot Run Multiple Signed CA In Store

Jun 4, 2013

Using Sha1 for Cisco 7925g and sha256 for data. Two separate CA's, one EnTrust (SHA1) the other Local Wondows CA (SHA256); ISE can only use one at a time to process a particular protocol (ie..EAP-TLS, HTTP, etc...) As a result we have to have a separate PSN just for Wireless and Wired VoIP (which can only hold SHA1 RSA1024).

View 5 Replies View Related

Linksys Wireless Adapters :: WMP300N V2 Drivers Not Digitally Signed

Apr 27, 2012

Yesterday I contacted live support with the problem that my network driver is crashing and giving me BSODs because of this when my download speed reaches above 5.5MBps.[url]...When I try to install those drivers, I first get a warning that the drivers aren't signed. I press "Continue" to dismiss the message but still at the end it fails to install and gives me the message "The drivers can not be loaded because they are not digitally signed", leaving you with a useless device.I bypassed the check windows is doing by turning off the check by running Windows in "Test Mode". I have test-signed the drivers myself that allowed me to install them. Now my device is working and not giving me BSODs anymore.
 
What I want is the drivers to be digitally signed by linksys/cisco. I think it's very unprofessional to distribute unsigned/useless drivers to customers. I am lucky that I am somewhat more experienced with this stuff, but what about people that are not? I think everybody should be able to install the latest drivers without any problems, without the need to hack into windows.I hope to see new drivers soon, or the same drivers but then digitally signed so I can turn off "Test Mode" again removing this ugly watermark in the bottom right corner.

View 9 Replies View Related

D-Link DIR-615 :: Losing Connection With It For Moment Then Automatically Signed Back On

Jun 6, 2011

he will lose connection with his chat programs for like 2 minutes then automatically be signed back on. He says he notices no other connection loss, but notices that sometimes his streaming will lag or games will lag. His ISP is Armstong (?) and he's wired to the router. XP OS.

View 3 Replies View Related

Cisco :: SRX 210 NCS 1.2 Import Third Party MIB File

Feb 21, 2013

I would like to use the NCS 1.2 to monitor Juniper SRX 210 firewall. When I try to import the MIB File from NCS, which show "Error: Failed to load MIB File "mib-802" because it is not in the resource path.what I can upload the MIB File from Juniper. [code]

View 0 Replies View Related

Cisco Wireless :: MAC Import On AIR-CT2504-K9?

Aug 8, 2012

I have 8 2504 controllers and each needs to have a minimum of 20 MAC addresses added. I would rather not add them one at a time but I don't see any features that allow for an import. Any way to do the import?

View 2 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Csv Import Fails

Dec 6, 2010

I'm trying the csv file import and getting some errors.
 
010-12-07 14:23:47: File Format Validation Completed2010-12-07 14:23:47: Import Started

2010-12-07 14:23:47: Record number: 1, Host 01-02-03-04-05-06: Import Failed2010-12-07 14:23:47: null Import process failed for unexpected reason: Unknown error has accurred.2010-12-07 14:23:47: Import Completed With errors

-------- Summary --------Total Number of Records Processed:1Number of Records Failed:1Number of Records Imported:1---------- End ----------Please refresh the table to see the changes.
 
On some other tries I get null field or missing fields.
 
It actually creates the host, but on editing it I get the following message:
 
An unexpected error has occurred. To continue your work, reselect the option in the left navigation bar.If you continue to receive the unexpected error message, close your browser and log in to ACS again.If you still receive the unexpected error message, contact your system administrator or technical assistance.
 
MACAddress:String(64):Required,description:String(1024),"enabled:Boolean(true,false):Required",HostIdentityGroup:String(256),VLAN:String(256):Required,attr-Expiration Date:Date(yyyy-Mmm-dd)01-02-03-04-05-06,AAATest,true,,Guest,2010-Dec-08

View 3 Replies View Related

Cisco :: RME 4.3.0 - Unable To Import IOS From Network

Sep 19, 2011

i tried to import a IOS from a network device into the software repository but the job fails with the following line in the log:
 
sw-10-ed24#
sw-10-ed24#dir /all flash:
Directory of flash:/

[Code].....
 
The chosen protocol ist SCP and the option "Use SSH for software image upgrade and software image import through CLI(with fallback to TELNET)." is enabled.

View 7 Replies View Related

Cisco Switches :: SG200 - SSL Import

Feb 16, 2013

I have an SG200 switch and am trying to import a certificate signed by my own CA.  I generate the CSR and sign it using Java's key tool with my own root cert.  When I attempt to import the resulting cert, the switch blanks out the certificate text box and deletes all of my d name data (CN, etc) from the switch.  What am I missing?

View 2 Replies View Related

Cisco Firewall :: PIX 525 / Failover And Import Configuration?

Mar 27, 2011

I have 2 PIX 525, which one of them, step and active failover mode the other PIX 525, leaving this off, do not know what happened may have been a power outage, but in any case I can turn it back on? And the other question I have is if I can import a configuration that I have saved on my computer. i have the PIX device manager.

View 11 Replies View Related

Cisco :: PI 1.3 Can Install Patch Before Import Data From WCS

Apr 15, 2013

I am migrating WCS to PI 1.3. I read from the guide that we need to migrate to NCS 1.1.1 first and we can get the demo license from Cisco.but the demo license is only 100 unit, but my WCS has 300 license units.How can I import the wcs data to NCS? Besides, I also read from the guide that I need to install patch in NCS before migrating the data to PI 1.3.can I install the patch before i import the data from WCS?

View 2 Replies View Related

Cisco Wireless :: 4400 Mac Filtering Import

Aug 2, 2012

I was wondering if there was a way to import a large number of mac addresses into the MAC filtering of a Cisco WLC 4400. We recently purchased 150 new Mac laptops and I need to add them to the Mac filtering. I have 5 WLC's to do this to.I already have the MAC addresses and names in a spreadsheet.

View 3 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved