<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to renew Cisco NAC Guest server ssl certificate in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/3782092#M735546</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could you guide me on how to renew existing SSL certificate on Cisco NGS.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please confirm if following setps are correct&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;From the administration interface, select&lt;/SPAN&gt;&lt;STRONG class="cBold"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Server &amp;gt; SSL Setting&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Create CSR&lt;/P&gt;
&lt;P&gt;Download CSR&lt;/P&gt;
&lt;P&gt;Upload new Certificate issue by CA team&lt;/P&gt;
&lt;P&gt;Reboot server&lt;/P&gt;</description>
    <pubDate>Thu, 17 Jan 2019 14:25:35 GMT</pubDate>
    <dc:creator>Vinay-M.</dc:creator>
    <dc:date>2019-01-17T14:25:35Z</dc:date>
    <item>
      <title>Cisco NAC Guest server ssl certificate</title>
      <link>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/1698983#M735459</link>
      <description>&lt;P&gt;I've just tried to install an SSL certificate from our internal issuing CA to overcome the certificate error when browsing to the NAC guest server. I can no longer browse to the NAC Guest server as there is a reported mismatch in the private key. Can someone please tell me how I can either replace the new certificate with the old one if it is backed up, using the CLI? Alternatively does anyone know how to generate a new localhost cert from the CLI?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance for your help,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 12:20:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/1698983#M735459</guid>
      <dc:creator>MikeFulstow</dc:creator>
      <dc:date>2020-02-21T12:20:07Z</dc:date>
    </item>
    <item>
      <title>Cisco NAC Guest server ssl certificate</title>
      <link>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/1698984#M735471</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To uplaod a private key follow this...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/nac/guestserver/configuration_guide/20/g_setup.html#wp1095977"&gt;http://www.cisco.com/en/US/docs/security/nac/guestserver/configuration_guide/20/g_setup.html#wp1095977&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the private key and Cert don't match you will get numerous issues with the DB, I suggest disabling replication before doing any work relating to PKI.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Grev&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Jul 2011 11:06:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/1698984#M735471</guid>
      <dc:creator>rgreville666</dc:creator>
      <dc:date>2011-07-12T11:06:48Z</dc:date>
    </item>
    <item>
      <title>Cisco NAC Guest server ssl certificate</title>
      <link>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/1698985#M735523</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Grev,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for this. I ended up raising a TAC case and they directed me to this link. After getting the various cert locations and importing the cert it works fine from either CLI or GUI. If absolutely necessary you can use the openssl toolset to re-generage CSR but it's generally best to backup the original web server SSL cert before you start!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the reply,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Jul 2011 22:32:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/1698985#M735523</guid>
      <dc:creator>MikeFulstow</dc:creator>
      <dc:date>2011-07-12T22:32:32Z</dc:date>
    </item>
    <item>
      <title>Re: How to renew Cisco NAC Guest server ssl certificate</title>
      <link>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/3782092#M735546</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could you guide me on how to renew existing SSL certificate on Cisco NGS.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please confirm if following setps are correct&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;From the administration interface, select&lt;/SPAN&gt;&lt;STRONG class="cBold"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Server &amp;gt; SSL Setting&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Create CSR&lt;/P&gt;
&lt;P&gt;Download CSR&lt;/P&gt;
&lt;P&gt;Upload new Certificate issue by CA team&lt;/P&gt;
&lt;P&gt;Reboot server&lt;/P&gt;</description>
      <pubDate>Thu, 17 Jan 2019 14:25:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-nac-guest-server-ssl-certificate/m-p/3782092#M735546</guid>
      <dc:creator>Vinay-M.</dc:creator>
      <dc:date>2019-01-17T14:25:35Z</dc:date>
    </item>
  </channel>
</rss>

