<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Expired Web server certificate preventing upgrade in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270723#M1120033</link>
    <description>&lt;P&gt;I am sure someone has a workaround, but the best way is to follow the process, renew the cert, and move on.&lt;/P&gt;
&lt;P&gt;Until you like to wait for other posters to post any other method or contacting TAC&lt;/P&gt;</description>
    <pubDate>Thu, 13 Mar 2025 07:53:11 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2025-03-13T07:53:11Z</dc:date>
    <item>
      <title>Expired Web server certificate preventing upgrade</title>
      <link>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270269#M1120009</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I just tried to upgrade a customers FTD via FDM, but got the following error.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2025-03-12 100040.jpg" style="width: 350px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/241588i0C9F916C115AC7A2/image-dimensions/350x294?v=v2" width="350" height="294" role="button" title="2025-03-12 100040.jpg" alt="2025-03-12 100040.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Checking this bug -&amp;nbsp;&lt;A href="https://bst.cisco.com/bugsearch/bug/CSCwd11825?rfs=qvred" target="_self"&gt;FDM upgrade failure due to HTTPS cert expired&lt;/A&gt;&amp;nbsp;they mention we first need to break the H/A before generating and assign the new selfsigned certificate. Is this really necessary? I cannot remember I had to this before when creating and assigning new certificates.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
      <pubDate>Wed, 12 Mar 2025 09:09:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270269#M1120009</guid>
      <dc:creator>Chess Norris</dc:creator>
      <dc:date>2025-03-12T09:09:40Z</dc:date>
    </item>
    <item>
      <title>Re: Expired Web server certificate preventing upgrade</title>
      <link>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270271#M1120010</link>
      <description>&lt;P&gt;Check on the browser certificate, is this expired? (I have not seen this error anytime before)&lt;/P&gt;
&lt;P&gt;try a different browser, and see if the complaint is the same?&lt;/P&gt;
&lt;P&gt;As per the bug, you may need to fix the issue before you proceed with the upgrade.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Mar 2025 09:20:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270271#M1120010</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2025-03-12T09:20:37Z</dc:date>
    </item>
    <item>
      <title>Re: Expired Web server certificate preventing upgrade</title>
      <link>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270275#M1120011</link>
      <description>&lt;P&gt;Yes, it actually expired today. The FTD's are located far away from where I'm located, so need to be careful and not risking lossing access to the FDM. I'm not really sure what this certificate do, as I'm still able to login to the FDM even though the certificate is expired. If anyone else had this issue, how did you solved it? It's over 200 support cases opend on this bug, so I guess there must be quite alot of peoples with this issue.&lt;/P&gt;
&lt;P&gt;THnaks&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
      <pubDate>Wed, 12 Mar 2025 09:32:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270275#M1120011</guid>
      <dc:creator>Chess Norris</dc:creator>
      <dc:date>2025-03-12T09:32:47Z</dc:date>
    </item>
    <item>
      <title>Re: Expired Web server certificate preventing upgrade</title>
      <link>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270549#M1120028</link>
      <description>&lt;P&gt;It's a dumb check, but yes if the cert is expired it stops the upgrade.&lt;/P&gt;
&lt;P&gt;Suspend, not break, HA on the &lt;STRONG&gt;standby&amp;nbsp;&lt;/STRONG&gt;FTD.&lt;/P&gt;
&lt;P&gt;Renew the internal cert on the &lt;STRONG&gt;active&lt;/STRONG&gt;. Wait for the management int to come back up and verify the cert is in use.&lt;/P&gt;
&lt;P&gt;Resume HA on the&amp;nbsp;&lt;STRONG&gt;standby&lt;/STRONG&gt; and sync the pair.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Mar 2025 19:53:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270549#M1120028</guid>
      <dc:creator>steeda</dc:creator>
      <dc:date>2025-03-12T19:53:39Z</dc:date>
    </item>
    <item>
      <title>Re: Expired Web server certificate preventing upgrade</title>
      <link>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270723#M1120033</link>
      <description>&lt;P&gt;I am sure someone has a workaround, but the best way is to follow the process, renew the cert, and move on.&lt;/P&gt;
&lt;P&gt;Until you like to wait for other posters to post any other method or contacting TAC&lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2025 07:53:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270723#M1120033</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2025-03-13T07:53:11Z</dc:date>
    </item>
    <item>
      <title>Re: Expired Web server certificate preventing upgrade</title>
      <link>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270767#M1120035</link>
      <description>&lt;P&gt;Quick follow-up. I found another self-signed certificate on the firewall that won’t expire until end of 2028, so I switched to that certificate instead. &amp;nbsp;The upgrade still wouldn’t trigger until I deleted the expired Web Server certificate, but after removing that certificate I was able to start the upgrade.&lt;/P&gt;
&lt;P&gt;/Chess&lt;/P&gt;</description>
      <pubDate>Thu, 13 Mar 2025 08:41:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/expired-web-server-certificate-preventing-upgrade/m-p/5270767#M1120035</guid>
      <dc:creator>Chess Norris</dc:creator>
      <dc:date>2025-03-13T08:41:58Z</dc:date>
    </item>
  </channel>
</rss>

