<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX certificate issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199875#M605467</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've been wrangling with the MS CRLs too.  Once I've cleaned up the URLs in the CDP attribute of the root CA cert, what else should I be aware of?  I don't have an LDAP ip assigned in the ca identity line.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have a successful formula or checklist for this config?  I want to be able to reproduce this setup a number of times and want to make sure all the gotchas are taken care of in the documentation.  Then I will post the result on the cisco site via one of their techs so that others don't go through as much pain as we have....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Philip&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 05 Jan 2004 16:23:38 GMT</pubDate>
    <dc:creator>p-cousins</dc:creator>
    <dc:date>2004-01-05T16:23:38Z</dc:date>
    <item>
      <title>PIX certificate issue</title>
      <link>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199871#M605463</link>
      <description>&lt;P&gt;I'm trying to connect a PIX FW and a VPN 3015 with the use of certificates.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I followed the instructions found in TAC, but at a given moment there's a command that configures your CA server to get the certificates, and it's here that it goes wrong.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;--&amp;gt; ca identity abcd 10.1.0.2:/certsrv/mscep/mscep.dll &amp;lt;--&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The given path and dll are not found on my W2 CA server: mscep/mscep.dll !&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any idea what went wrong or do I need to point to another file on our W2K CA  server ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 06:46:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199871#M605463</guid>
      <dc:creator>SDWorx_2</dc:creator>
      <dc:date>2020-02-21T06:46:08Z</dc:date>
    </item>
    <item>
      <title>Re: PIX certificate issue</title>
      <link>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199872#M605464</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You have to install an addon application on your Micarosoft CA server. I believe it is called MS-SCEP. You can look at Microsoft's site for that&lt;/P&gt;&lt;P&gt;Jazib&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 28 May 2003 11:44:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199872#M605464</guid>
      <dc:creator>jfrahim</dc:creator>
      <dc:date>2003-05-28T11:44:57Z</dc:date>
    </item>
    <item>
      <title>Re: PIX certificate issue</title>
      <link>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199873#M605465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Let me know if you dont find it. I remember it took a bit of looking on MS's site to get it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you plan to Revoke your Certs, There are some issue in getting the CRL to work properly. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You need to have the 6.3 (1) code and you need to leave off the LDAP address on the ca identity command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've spent months with Cisco trying to get revoked Certs to work properly.  Let me know if you need some assistance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&amp;lt;-&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jun 2003 18:10:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199873#M605465</guid>
      <dc:creator>stownsend</dc:creator>
      <dc:date>2003-06-04T18:10:56Z</dc:date>
    </item>
    <item>
      <title>Re: PIX certificate issue</title>
      <link>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199874#M605466</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You have to install mscep utility (cepsetup.exe), you can find it on Microsoft Add-On CD. This utility install RA on CA, after that you can make enrollment.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 27 Jun 2003 08:30:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199874#M605466</guid>
      <dc:creator>JAKUB CHYTRACEK</dc:creator>
      <dc:date>2003-06-27T08:30:38Z</dc:date>
    </item>
    <item>
      <title>Re: PIX certificate issue</title>
      <link>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199875#M605467</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've been wrangling with the MS CRLs too.  Once I've cleaned up the URLs in the CDP attribute of the root CA cert, what else should I be aware of?  I don't have an LDAP ip assigned in the ca identity line.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have a successful formula or checklist for this config?  I want to be able to reproduce this setup a number of times and want to make sure all the gotchas are taken care of in the documentation.  Then I will post the result on the cisco site via one of their techs so that others don't go through as much pain as we have....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Philip&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 05 Jan 2004 16:23:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-certificate-issue/m-p/199875#M605467</guid>
      <dc:creator>p-cousins</dc:creator>
      <dc:date>2004-01-05T16:23:38Z</dc:date>
    </item>
  </channel>
</rss>

