<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Export CSR from CAS in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/export-csr-from-cas/m-p/1753356#M246942</link>
    <description>&lt;P&gt;Hi All, &lt;/P&gt;&lt;P&gt;we are using NAC 4.1 version. I need to get new cert from provider, so need to export CSR again. I've exported CSR and submitted to provider, but they said the CSR&amp;nbsp; is 2048 bits and needs to be 1024. I don't see any option in CAS GUI page to specifiy key length when generate CSR. &lt;/P&gt;&lt;P&gt;any suggestion would be very apprciated. &lt;/P&gt;&lt;P&gt;Alex&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 01:22:48 GMT</pubDate>
    <dc:creator>alex goshtaei</dc:creator>
    <dc:date>2019-03-11T01:22:48Z</dc:date>
    <item>
      <title>Export CSR from CAS</title>
      <link>https://community.cisco.com/t5/network-access-control/export-csr-from-cas/m-p/1753356#M246942</link>
      <description>&lt;P&gt;Hi All, &lt;/P&gt;&lt;P&gt;we are using NAC 4.1 version. I need to get new cert from provider, so need to export CSR again. I've exported CSR and submitted to provider, but they said the CSR&amp;nbsp; is 2048 bits and needs to be 1024. I don't see any option in CAS GUI page to specifiy key length when generate CSR. &lt;/P&gt;&lt;P&gt;any suggestion would be very apprciated. &lt;/P&gt;&lt;P&gt;Alex&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:22:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/export-csr-from-cas/m-p/1753356#M246942</guid>
      <dc:creator>alex goshtaei</dc:creator>
      <dc:date>2019-03-11T01:22:48Z</dc:date>
    </item>
    <item>
      <title>Export CSR from CAS</title>
      <link>https://community.cisco.com/t5/network-access-control/export-csr-from-cas/m-p/1753357#M246952</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Alex,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you export the private key and the CSR this is based on the current certificate installed on the CAS. So if you want to generate a CSR with a key length of 1024 you will have generate a self signed certificate with a 1024 encryption key. Or you can use openssl to create a CSR on behalf of the CAS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the guide that explains what i just mentioned:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/nac/appliance/configuration_guide/411/cas411/s_admin.html#wp1040143"&gt;http://www.cisco.com/en/US/docs/security/nac/appliance/configuration_guide/411/cas411/s_admin.html#wp1040143&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is some information regarding openssl:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.openssl.org/docs/HOWTO/certificates.txt"&gt;http://www.openssl.org/docs/HOWTO/certificates.txt&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Sep 2011 06:53:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/export-csr-from-cas/m-p/1753357#M246952</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2011-09-09T06:53:30Z</dc:date>
    </item>
  </channel>
</rss>

