<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Certificate error- Cisco IOS router as CA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/certificate-error-cisco-ios-router-as-ca/m-p/3821227#M30192</link>
    <description>Hi,&lt;BR /&gt;Is http disabled on the router? ...it is disabled as default - Enable it by entering the command "ip http server"&lt;BR /&gt;&lt;BR /&gt;HTH</description>
    <pubDate>Mon, 18 Mar 2019 11:50:41 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2019-03-18T11:50:41Z</dc:date>
    <item>
      <title>Certificate error- Cisco IOS router as CA</title>
      <link>https://community.cisco.com/t5/network-security/certificate-error-cisco-ios-router-as-ca/m-p/3821224#M30191</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am trying a very simple CA set up as below&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;R4 Fa3/0--------------Fa0/0 R2 AKA CA SERVER&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Below is the debug o/p from R2 while executing the command "crypto CA authenticate &amp;lt;trustpoint-name&amp;gt;" in R4&lt;/P&gt;
&lt;P&gt;May 18 11:23:14.383: CRYPTO_CS: received a SCEP GetCACert request&lt;BR /&gt;May 18 11:23:14.391: CRYPTO_CS: msg not sent due to HTTP server error 1725988684&lt;BR /&gt;May 18 11:23:14.391: CRYPTO_CS: CA certificate not sent due to HTTP server error.&lt;BR /&gt;May 18 11:23:14.487: CRYPTO_CS: received a SCEP GetCACaps request&lt;BR /&gt;May 18 11:23:14.491: CRYPTO_CS: msg not sent due to HTTP server error 1&lt;BR /&gt;May 18 11:23:14.495: CRYPTO_CS: Capabilities not sent due to HTTP server error&lt;/P&gt;
&lt;P&gt;R2#&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;R2 Config =&lt;/P&gt;
&lt;P&gt;crypto pki server CA-KEY&lt;BR /&gt;issuer-name CN=CCIE training O=Ajuslab OU=training L=India&lt;BR /&gt;grant auto&lt;BR /&gt;crypto pki trustpoint CA-KEY&lt;BR /&gt;revocation-check crl&lt;BR /&gt;rsakeypair CA-KEY&lt;BR /&gt;crypto pki certificate chain CA-KEY&lt;BR /&gt;certificate ca 01&lt;BR /&gt;30820245 308201AE A0030201 02020101 300D0609 2A864886 F70D0101 04050030&lt;BR /&gt;36313430 32060355 0403132B 43434945 20747261 696E696E 67204F3D 416A7573&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;R4&lt;/P&gt;
&lt;P&gt;crypto pki trustpoint TP-self-signed-4279256517&lt;BR /&gt;enrollment selfsigned&lt;BR /&gt;subject-name cn=IOS-Self-Signed-Certificate-4279256517&lt;BR /&gt;revocation-check none&lt;BR /&gt;rsakeypair TP-self-signed-4279256517&lt;BR /&gt;crypto pki trustpoint CLIENT-KEY&lt;BR /&gt;enrollment url &lt;A href="http://199.55.55.1:80" target="_blank"&gt;http://199.55.55.1:80&lt;/A&gt;&lt;BR /&gt;revocation-check none&lt;BR /&gt;crypto pki certificate chain TP-self-signed-4279256517&lt;BR /&gt;crypto pki certificate chain CLIENT-KEY&lt;BR /&gt;certificate ca 01&lt;BR /&gt;30820245 308201AE A0030201 02020101 300D0609 2A864886 F70D0101 04050030&lt;BR /&gt;36313430 32060355 0403132B 43434945 20747261 696E696E 67204F3D 416A7573&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can anyone help me whats this error is &amp;amp; how to fix it?&lt;/P&gt;</description>
      <pubDate>Mon, 18 Mar 2019 11:44:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/certificate-error-cisco-ios-router-as-ca/m-p/3821224#M30191</guid>
      <dc:creator>Ajay Raj</dc:creator>
      <dc:date>2019-03-18T11:44:23Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate error- Cisco IOS router as CA</title>
      <link>https://community.cisco.com/t5/network-security/certificate-error-cisco-ios-router-as-ca/m-p/3821227#M30192</link>
      <description>Hi,&lt;BR /&gt;Is http disabled on the router? ...it is disabled as default - Enable it by entering the command "ip http server"&lt;BR /&gt;&lt;BR /&gt;HTH</description>
      <pubDate>Mon, 18 Mar 2019 11:50:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/certificate-error-cisco-ios-router-as-ca/m-p/3821227#M30192</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2019-03-18T11:50:41Z</dc:date>
    </item>
  </channel>
</rss>

