<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACE certificates in an auth-group in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255715#M40356</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You said you have an ACE20 but it does not support A4 series, then do you have an ACE30 instead?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jorge&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 31 May 2013 12:13:27 GMT</pubDate>
    <dc:creator>Jorge Bejarano</dc:creator>
    <dc:date>2013-05-31T12:13:27Z</dc:date>
    <item>
      <title>ACE certificates in an auth-group</title>
      <link>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255714#M40355</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am hoping someone is able to assist with the following: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to assign multiple certificates to a single VIP via an Auth-group, the current limitation is 4 certificates in a Auth-group in A3(3.5) and support for 10 certificates within a Auth-group seems to be in a released in (A4(1.0) but we are running an ACE-20. &lt;/P&gt;&lt;P&gt;&amp;nbsp; &lt;/P&gt;&lt;P&gt;In terms of configuration we had to avoid using wildcard or giving out the same client SSL cert for different customers.&amp;nbsp; The web service we host has multiple 3rd parties connecting to it to manage it for support etc.&amp;nbsp; The 3rd parties can't be given the same client SSL cert for security reasons therefore we tried using the Auth-group and bundling a few together.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are also constrained in creating multiple SSL services for the following reasons:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Webservice URL is restricted and licensed with 1 DNS entry&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; URL is web based so it would be difficult for us to set different DNS &amp;gt; IP addresses (each 3rd party hits a different SSL proxy but would use the same backend server farm)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;There seems to be discrepancy in the command documentation on A5(1.0):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Support for 10 certificates in an auth-group A2(3.0):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/ace/vA5_1_0/command/reference/authngrp.html#wp1032855"&gt;http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/ace/vA5_1_0/command/reference/authngrp.html#wp1032855&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Support for 10 certificates in an auth-group A4(1.0):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/ace/vA5_1_0/command/reference/config.html#wpxref63102"&gt;http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/ace/vA5_1_0/command/reference/config.html#wpxref63102&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards Craig&lt;/P&gt;</description>
      <pubDate>Mon, 27 May 2013 09:49:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255714#M40355</guid>
      <dc:creator>craig bache</dc:creator>
      <dc:date>2013-05-27T09:49:38Z</dc:date>
    </item>
    <item>
      <title>ACE certificates in an auth-group</title>
      <link>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255715#M40356</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You said you have an ACE20 but it does not support A4 series, then do you have an ACE30 instead?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jorge&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 May 2013 12:13:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255715#M40356</guid>
      <dc:creator>Jorge Bejarano</dc:creator>
      <dc:date>2013-05-31T12:13:27Z</dc:date>
    </item>
    <item>
      <title>ACE certificates in an auth-group</title>
      <link>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255716#M40357</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Craig for your information here you have this bug: &lt;/P&gt;&lt;H6&gt;&lt;A href="https://www.cisco.com/cisco/psn/bssprt/bss?searchType=bstbugidsearch&amp;amp;page=bstBugDetail&amp;amp;BugID=CSCuc96045" target="_blank"&gt;CSCuc96045&lt;/A&gt;&lt;/H6&gt;&lt;P&gt;&lt;/P&gt;&lt;TABLE border="0" cellpadding="5" cellspacing="2" width="100%"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD colspan="2" style="font-size: 88%; padding: 8px 8px 8px 8px;"&gt;&lt;STRONG&gt;DOC:Authgroups are limited to 4 per context. This needs to be documented. &lt;/STRONG&gt; &lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="font-size: 88%; padding: 0px 8px 8px 8px;" valign="top"&gt;&lt;BR /&gt; &lt;STRONG&gt;Symptom:&lt;/STRONG&gt;&lt;BR /&gt;Document about Authgroup being limited to 4 per context need to be updated&lt;P&gt;&lt;/P&gt;&lt;STRONG&gt;&lt;STRONG&gt;Conditions&lt;/STRONG&gt;:&lt;/STRONG&gt;&lt;BR /&gt;When you try to configure authgroup in , there is a limitation of 4 authgroup per context.&lt;BR /&gt;If you try to configure a 5'th one, following is what you get:&lt;BR /&gt;Error: maximum number of authgroups already defined&lt;P&gt;&lt;/P&gt;&lt;STRONG&gt;Workaround:&lt;/STRONG&gt;&lt;BR /&gt;None.&amp;nbsp; This is a documentation bug which is intended to update the documents&amp;nbsp; about the Authgroup limit to 4 per context need to be updated. &lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;Mark if this answers your question.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jorge&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 May 2013 12:28:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255716#M40357</guid>
      <dc:creator>Jorge Bejarano</dc:creator>
      <dc:date>2013-05-31T12:28:24Z</dc:date>
    </item>
    <item>
      <title>ACE certificates in an auth-group</title>
      <link>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255717#M40358</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Jorge&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for the response, with regrads to the A4 and the ACE-20 I was just pointing out this is not an option due to the hardware not supporting the software.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks Craig&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 May 2013 12:53:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-certificates-in-an-auth-group/m-p/2255717#M40358</guid>
      <dc:creator>craig bache</dc:creator>
      <dc:date>2013-05-31T12:53:23Z</dc:date>
    </item>
  </channel>
</rss>

