<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ACE key.pem import error in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387994#M41226</link>
    <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;after extracting the Cert.pem and Key.pem from the PXF file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am get the following error trying to import the Key.pem file to the ACE &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ENG-CTN-ACE01/Admin# crypto import tftp 10.3.31.249 key5.pem key5&lt;/P&gt;&lt;P&gt;Trying to connect to tftp server......&lt;/P&gt;&lt;P&gt;!!!!!!!&lt;/P&gt;&lt;P&gt; TFTP get operation was successful&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; 3294 bytes copied&lt;/P&gt;&lt;P&gt;Successfully imported file from remote server.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Error: File not of supported key or certificate type - RSA,&amp;nbsp; import failed&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;ENG-CTN-ACE01/Admin#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;* i have decrypted the key.pem and tried adding the key &lt;SPAN style="font-size: 10pt;"&gt;manually &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;with &lt;/SPAN&gt;&lt;SPAN style="color: #333333; font-size: 10pt; text-decoration: underline; "&gt;crypto import terminal&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt; command but still getting the same error.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt;can you please assist as want am i doing wrong.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt;the cert has been uploaded successfully.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Filename&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; File&amp;nbsp; File&amp;nbsp;&amp;nbsp;&amp;nbsp; Expor&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Key/&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Size&amp;nbsp; Type&amp;nbsp;&amp;nbsp;&amp;nbsp; table&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Cert&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;cisco-sample-cert&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1082&amp;nbsp; PEM&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Yes&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; CERT&lt;/P&gt;&lt;P&gt;cisco-sample-key&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 887&amp;nbsp;&amp;nbsp; PEM&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Yes&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; KEY&lt;/P&gt;&lt;P&gt;wildcard-20140102.cer&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1459&amp;nbsp; DER&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Yes&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; CERT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;rayyaan &lt;/P&gt;</description>
    <pubDate>Fri, 03 Jan 2014 10:13:12 GMT</pubDate>
    <dc:creator>rayyaan fayker</dc:creator>
    <dc:date>2014-01-03T10:13:12Z</dc:date>
    <item>
      <title>Cisco ACE key.pem import error</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387994#M41226</link>
      <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;after extracting the Cert.pem and Key.pem from the PXF file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i am get the following error trying to import the Key.pem file to the ACE &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ENG-CTN-ACE01/Admin# crypto import tftp 10.3.31.249 key5.pem key5&lt;/P&gt;&lt;P&gt;Trying to connect to tftp server......&lt;/P&gt;&lt;P&gt;!!!!!!!&lt;/P&gt;&lt;P&gt; TFTP get operation was successful&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; 3294 bytes copied&lt;/P&gt;&lt;P&gt;Successfully imported file from remote server.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Error: File not of supported key or certificate type - RSA,&amp;nbsp; import failed&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;ENG-CTN-ACE01/Admin#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;* i have decrypted the key.pem and tried adding the key &lt;SPAN style="font-size: 10pt;"&gt;manually &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;with &lt;/SPAN&gt;&lt;SPAN style="color: #333333; font-size: 10pt; text-decoration: underline; "&gt;crypto import terminal&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt; command but still getting the same error.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt;can you please assist as want am i doing wrong.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt;the cert has been uploaded successfully.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Filename&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; File&amp;nbsp; File&amp;nbsp;&amp;nbsp;&amp;nbsp; Expor&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Key/&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Size&amp;nbsp; Type&amp;nbsp;&amp;nbsp;&amp;nbsp; table&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Cert&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;cisco-sample-cert&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1082&amp;nbsp; PEM&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Yes&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; CERT&lt;/P&gt;&lt;P&gt;cisco-sample-key&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 887&amp;nbsp;&amp;nbsp; PEM&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Yes&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; KEY&lt;/P&gt;&lt;P&gt;wildcard-20140102.cer&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1459&amp;nbsp; DER&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Yes&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; CERT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #333333;"&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;rayyaan &lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2014 10:13:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387994#M41226</guid>
      <dc:creator>rayyaan fayker</dc:creator>
      <dc:date>2014-01-03T10:13:12Z</dc:date>
    </item>
    <item>
      <title>Cisco ACE key.pem import error</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387995#M41227</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Rayyaan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your certificate seems to be in .der format. Please use the below tool to convert the cert and key pair to .PEM format and import again using terminal or tftp or ftp and try again. Once it shows PEM format there in "show crypto files", verify the cert and key pair and if successfull you are good to go.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.sslshopper.com/ssl-converter.html"&gt;https://www.sslshopper.com/ssl-converter.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Kanwal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Jan 2014 13:52:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387995#M41227</guid>
      <dc:creator>Kanwaljeet Singh</dc:creator>
      <dc:date>2014-01-03T13:52:49Z</dc:date>
    </item>
    <item>
      <title>Cisco ACE key.pem import error</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387996#M41228</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have change both file to a PEM format but still getting the same errors when trying to import the key. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The cer imports perfectly but only the key that i am trying to load onto the ACE is given me a problem, laoding the key manaully i get the same issue.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Jan 2014 08:48:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387996#M41228</guid>
      <dc:creator>rayyaan fayker</dc:creator>
      <dc:date>2014-01-06T08:48:51Z</dc:date>
    </item>
    <item>
      <title>Cisco ACE key.pem import error</title>
      <link>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387997#M41229</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI Rayyaan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is a key which you cannot share so that i can try here on my and see what is going on so i would suggested contacting your CA vendor and ask them to provide the key and cert in PEM format. Once you have that try it again. That's all i guess we can do here or you can open a TAC case and see what is going on. If the key is in PEM format ACE shouldn't have any problem in accepting it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From user guide:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;H3&gt;Importing Certificate and Key Pair Files &lt;/H3&gt;&lt;P&gt;&lt;A name="wp1075134"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;The ACE supports the importation of PEM-encoded key pairs and certificates (including wildcard certificates) signed by keys. The ACE allows a maximum public key size of 4096 bits. The maximum private key size is 2048 bits. &lt;/P&gt;&lt;P&gt;&lt;A name="wp1075140"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;You can import a certificate or key pair file to the ACE from a remote server by using the &lt;STRONG&gt;crypto import&lt;/STRONG&gt; command in Exec mode. You can import either individual certificates and keys or multiple certificates and keys. Because a network device uses its certificate and corresponding public key together to prove its identity during the SSL handshake, be sure to import both the certificate file and its corresponding key pair file. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;The ACE supports the importation of PEM-encoded SSL certificates and keys with a maximum line width of 130 characters using the terminal. If an SSL certificate or key is not wrapped or it exceeds 130 characters per line, use a text editor such as the visual (vi) editor or Notepad to manually wrap the certificate or key to less than 130 characters per line&lt;/STRONG&gt;. Alternatively, you can import the certificate or key by using SFTP, FTP, or TFTP with no regard to line width&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Kanwal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Jan 2014 16:27:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/cisco-ace-key-pem-import-error/m-p/2387997#M41229</guid>
      <dc:creator>Kanwaljeet Singh</dc:creator>
      <dc:date>2014-01-06T16:27:14Z</dc:date>
    </item>
  </channel>
</rss>

