<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE Certificate in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852666#M39888</link>
    <description>&lt;P&gt;Hi Mate,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I am deploying new Cisco appliance 3495 with pre-installed image 2.0. I have run setup and configured with IP address and hostname (ISETEST) but later changed the hostname of the ISE. My query is regarding the pre-installed certificates.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Certificate Services Node CA - ISETEST#00002&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Certificate Services OCSP Responder -ISETEST #00004&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Certificate Services Endpoint Sub CA - ISETEST#00001&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;However after change in the hostname these certificates seems to be associated with old hostname. Do hostname change have any impact with respect to any component.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Quick response will be highly appreciated.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Mandhir Mehta&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 06:46:27 GMT</pubDate>
    <dc:creator>mandhir_mehta</dc:creator>
    <dc:date>2019-03-11T06:46:27Z</dc:date>
    <item>
      <title>ISE Certificate</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852666#M39888</link>
      <description>&lt;P&gt;Hi Mate,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I am deploying new Cisco appliance 3495 with pre-installed image 2.0. I have run setup and configured with IP address and hostname (ISETEST) but later changed the hostname of the ISE. My query is regarding the pre-installed certificates.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Certificate Services Node CA - ISETEST#00002&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Certificate Services OCSP Responder -ISETEST #00004&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Certificate Services Endpoint Sub CA - ISETEST#00001&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;However after change in the hostname these certificates seems to be associated with old hostname. Do hostname change have any impact with respect to any component.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Quick response will be highly appreciated.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Mandhir Mehta&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:46:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852666#M39888</guid>
      <dc:creator>mandhir_mehta</dc:creator>
      <dc:date>2019-03-11T06:46:27Z</dc:date>
    </item>
    <item>
      <title>Hello Mandhir-</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852667#M39889</link>
      <description>&lt;P&gt;Hello Mandhir-&lt;/P&gt;
&lt;P&gt;Are you using any of those certificates for anything in your ISE deployment?&amp;nbsp;For instance:&lt;/P&gt;
&lt;P&gt;- EAP based authentications&lt;/P&gt;
&lt;P&gt;- Web Portals (Guest, Sponsor, Client Provisioning, etc)&lt;/P&gt;
&lt;P&gt;If not, then I don't see how this would impact your deployment immediately. However, it is best practice to re-generate those certificates so they reflect the correct FQDN. Also, you should make sure that the following are also correct:&lt;/P&gt;
&lt;P&gt;- DNS records to reflect the new FQDN&lt;/P&gt;
&lt;P&gt;- AD computer objects reflect&amp;nbsp;the new ISE names&lt;/P&gt;
&lt;P&gt;I hope this helps!&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2016 06:25:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852667#M39889</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2016-05-17T06:25:55Z</dc:date>
    </item>
    <item>
      <title>Hi Neno,</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852668#M39899</link>
      <description>&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Hi Neno,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks for your response.&lt;/P&gt;
&lt;P&gt;But these certificates were pre-installed in the ISE appliance and dont know from where to re-generate these certificates. Can you help with this, if anything information is required please let me know&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; Yes, I am going to use below functionality in my deployment.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;- EAP based authentications&lt;/P&gt;
&lt;P&gt;- Web Portals (Guest, Sponsor, Client Provisioning, etc)&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Mandhir Mehta&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 17 May 2016 09:44:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852668#M39899</guid>
      <dc:creator>mandhir_mehta</dc:creator>
      <dc:date>2016-05-17T09:44:04Z</dc:date>
    </item>
    <item>
      <title>To re-generate the</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852669#M39901</link>
      <description>&lt;P&gt;To re-generate the certificates go to:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Administration &amp;gt; System &amp;gt; Certificates &amp;gt; System Certificates &amp;gt; Generate Self Signed Certificate&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;This process will generate you new certificates and will replace the existing ones. Please note that your nodes will reload during this process so you should plan this during a maintenance window.&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 May 2016 15:30:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-certificate/m-p/2852669#M39901</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2016-05-18T15:30:43Z</dc:date>
    </item>
  </channel>
</rss>

