<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ssl certificate upload on acs appliance in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ssl-certificate-upload-on-acs-appliance/m-p/1665791#M300316</link>
    <description>&lt;P&gt;Hi All ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I have SSL certificate issued to my acs appliance by a CA authority , I need to upload this SSL certificate on acs applliance , I have followed below step to upload the certificate from ftp server .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style=": ; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; color: #000000; font-size: 12pt; sans-serif&amp;amp;quot: ; mso-ansi-language: EN-US; font-family: &amp;amp;quot; mso-fareast-theme-font: minor-latin; , &amp;amp;quot: ; Arial&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;1.Choose &lt;STRONG&gt;System Configuration &amp;gt; ACS Certificate Setup&lt;/STRONG&gt;.&lt;/SPAN&gt;&lt;SPAN style="color: #000000;"&gt;&lt;SPAN style=": ; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; font-size: 12pt; Times New Roman&amp;amp;quot: ; mso-ansi-language: EN-US; mso-fareast-theme-font: minor-latin; font-family: Times New Roman; , &amp;amp;quot: ; serif&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; &lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: &amp;amp;quot;Arial&amp;amp;quot;, &amp;amp;quot;sans-serif&amp;amp;quot;; font-size: 12pt; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; mso-ansi-language: EN-US; mso-fareast-theme-font: minor-latin; mso-fareast-font-family: Calibri;"&gt;&lt;SPAN&gt;2.Click &lt;STRONG&gt;Install ACS Certificate&lt;/STRONG&gt;.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="color: #000000;"&gt;&lt;SPAN style=": ; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; font-size: 12pt; Times New Roman&amp;amp;quot: ; mso-ansi-language: EN-US; mso-fareast-theme-font: minor-latin; font-family: Times New Roman; , &amp;amp;quot: ; serif&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; &lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; font-size: 12pt; mso-ansi-language: EN-US; sans-serif&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; , &amp;amp;quot: ; Arial&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;3.Choose the &lt;STRONG&gt;Read certificate&lt;/STRONG&gt; from file option and then click the &lt;STRONG&gt;Download certificate file&lt;/STRONG&gt; link.&lt;/SPAN&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; color: #000000; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; I have seen private key file window &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; color: #000000; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I dont have private key file issued by CA authority ,whether private key file is required during ssl certificate upload on acs appliance ,Why this private key file is used .This private key file is any were used for EAP-TLS authentication.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; color: #000000; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;Note : SSL certificate issued by CA authority is being used on acs 3.3 server , we have downloaded this ssl certificate from acs 3.3 server. I dont see private key on my acs 3.3 server. &lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 01:00:06 GMT</pubDate>
    <dc:creator>sansarav720e</dc:creator>
    <dc:date>2019-03-11T01:00:06Z</dc:date>
    <item>
      <title>ssl certificate upload on acs appliance</title>
      <link>https://community.cisco.com/t5/network-access-control/ssl-certificate-upload-on-acs-appliance/m-p/1665791#M300316</link>
      <description>&lt;P&gt;Hi All ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I have SSL certificate issued to my acs appliance by a CA authority , I need to upload this SSL certificate on acs applliance , I have followed below step to upload the certificate from ftp server .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style=": ; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; color: #000000; font-size: 12pt; sans-serif&amp;amp;quot: ; mso-ansi-language: EN-US; font-family: &amp;amp;quot; mso-fareast-theme-font: minor-latin; , &amp;amp;quot: ; Arial&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;1.Choose &lt;STRONG&gt;System Configuration &amp;gt; ACS Certificate Setup&lt;/STRONG&gt;.&lt;/SPAN&gt;&lt;SPAN style="color: #000000;"&gt;&lt;SPAN style=": ; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; font-size: 12pt; Times New Roman&amp;amp;quot: ; mso-ansi-language: EN-US; mso-fareast-theme-font: minor-latin; font-family: Times New Roman; , &amp;amp;quot: ; serif&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; &lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: &amp;amp;quot;Arial&amp;amp;quot;, &amp;amp;quot;sans-serif&amp;amp;quot;; font-size: 12pt; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; mso-ansi-language: EN-US; mso-fareast-theme-font: minor-latin; mso-fareast-font-family: Calibri;"&gt;&lt;SPAN&gt;2.Click &lt;STRONG&gt;Install ACS Certificate&lt;/STRONG&gt;.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="color: #000000;"&gt;&lt;SPAN style=": ; mso-bidi-language: AR-SA; mso-fareast-language: EN-US; font-size: 12pt; Times New Roman&amp;amp;quot: ; mso-ansi-language: EN-US; mso-fareast-theme-font: minor-latin; font-family: Times New Roman; , &amp;amp;quot: ; serif&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; &lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; font-size: 12pt; mso-ansi-language: EN-US; sans-serif&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; , &amp;amp;quot: ; Arial&amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;3.Choose the &lt;STRONG&gt;Read certificate&lt;/STRONG&gt; from file option and then click the &lt;STRONG&gt;Download certificate file&lt;/STRONG&gt; link.&lt;/SPAN&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; color: #000000; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt; I have seen private key file window &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; color: #000000; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I dont have private key file issued by CA authority ,whether private key file is required during ssl certificate upload on acs appliance ,Why this private key file is used .This private key file is any were used for EAP-TLS authentication.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="mso-fareast-language: EN-US; mso-bidi-language: AR-SA; : ; color: #000000; font-size: 12pt; mso-ansi-language: EN-US; Times New Roman&amp;amp;quot: ; mso-fareast-theme-font: minor-latin; font-family: &amp;amp;quot; serif&amp;amp;quot: ; , &amp;amp;quot: ; mso-fareast-font-family: Calibri; "&gt;Note : SSL certificate issued by CA authority is being used on acs 3.3 server , we have downloaded this ssl certificate from acs 3.3 server. I dont see private key on my acs 3.3 server. &lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:00:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssl-certificate-upload-on-acs-appliance/m-p/1665791#M300316</guid>
      <dc:creator>sansarav720e</dc:creator>
      <dc:date>2019-03-11T01:00:06Z</dc:date>
    </item>
    <item>
      <title>Re: ssl certificate upload on acs appliance</title>
      <link>https://community.cisco.com/t5/network-access-control/ssl-certificate-upload-on-acs-appliance/m-p/1665792#M300385</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The certificate will have two keys private key and public key. The private key is private to the ACS Server but the public key is open to anyone who is trusted by the CA.&lt;/P&gt;&lt;P&gt;You will define the path to the private key while generating a CSR. you need to enter the same filename and path in here.&lt;/P&gt;&lt;P&gt;The above is true for certificates in PKCS7 or PKCS#10 format.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But if the certificate is in PKCS#12 format, then you can install it straight away.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Keys are not used only for EAP-TLS. They are a requirement as per the PKI system. A cert will not get installed&amp;nbsp; without priavte key if in format .cer or .der&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The following link will guide you to installation process.&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_configuration_example09186a0080545a29.shtml#t8"&gt;http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_configuration_example09186a0080545a29.shtml#t8&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;BR /&gt;Anisha&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: please mark this thread as answered if you feel your query is resolved. Do rate helpful posts.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Apr 2011 13:55:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssl-certificate-upload-on-acs-appliance/m-p/1665792#M300385</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-04-18T13:55:49Z</dc:date>
    </item>
    <item>
      <title>Re: ssl certificate upload on acs appliance</title>
      <link>https://community.cisco.com/t5/network-access-control/ssl-certificate-upload-on-acs-appliance/m-p/1665793#M300452</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Anisha ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Thanx for your postings , I have exported this ssl certificate from my old acs 3.3 server from acsstore folder which is issued by CA authority which is used for EAP-TLS authentication . I need to reuse this certifcate on my ACS appliance for EAP-TLS authentication ,&amp;nbsp; How to understand from the certifcate has both private key &amp;amp; public key , Similarly what to be done for private key .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Kindly suggest me over here , Similalry how to understand the SSL certficate is PKCS7 or PKCS#10 format. Your help is highly appercitated&amp;nbsp; on this .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Apr 2011 18:43:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssl-certificate-upload-on-acs-appliance/m-p/1665793#M300452</guid>
      <dc:creator>sansarav720e</dc:creator>
      <dc:date>2011-04-18T18:43:26Z</dc:date>
    </item>
  </channel>
</rss>

