<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Associated Trustpoints question when installing identity certificate via ASDM in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416192#M950656</link>
    <description>&lt;P&gt;Hi everyone&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Im upgrading the firewall hardware. I saved the identity certificates from the old firewall and then I took a screenshot of the ASDM which has the identity certificate information.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I then realised that one of the certificates has more than one associated trustpoint in the screenshot. I can see one trustpoint then a comma and then i cant completely read the second associated trustpoint.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I no longer have access to the ASDM but i can get hold of the config file. I want to try to add the identity certifiacte via the ASDM as i'm more comfortable with it.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My question is, is there any way i can find out what the second associated trustpoint is from the config file? If i can, is it possible to just add the ID cert via ASDM by entering the certificate name as the two associated trustpoints separated by a comma?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 15:59:25 GMT</pubDate>
    <dc:creator>faghouri83</dc:creator>
    <dc:date>2020-02-21T15:59:25Z</dc:date>
    <item>
      <title>Associated Trustpoints question when installing identity certificate via ASDM</title>
      <link>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416192#M950656</link>
      <description>&lt;P&gt;Hi everyone&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Im upgrading the firewall hardware. I saved the identity certificates from the old firewall and then I took a screenshot of the ASDM which has the identity certificate information.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I then realised that one of the certificates has more than one associated trustpoint in the screenshot. I can see one trustpoint then a comma and then i cant completely read the second associated trustpoint.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I no longer have access to the ASDM but i can get hold of the config file. I want to try to add the identity certifiacte via the ASDM as i'm more comfortable with it.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My question is, is there any way i can find out what the second associated trustpoint is from the config file? If i can, is it possible to just add the ID cert via ASDM by entering the certificate name as the two associated trustpoints separated by a comma?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:59:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416192#M950656</guid>
      <dc:creator>faghouri83</dc:creator>
      <dc:date>2020-02-21T15:59:25Z</dc:date>
    </item>
    <item>
      <title>Re: Associated Trustpoints question when installing identity certificate via ASDM</title>
      <link>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416328#M950657</link>
      <description>&lt;P&gt;what are you using the certs for? just for ASDM?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;also, exporting the cert is not enough, you will need to export the private and public RSA keys as well.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;imho, you will ne better off generating new keys and subsequent cers&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jul 2018 13:49:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416328#M950657</guid>
      <dc:creator>Dennis Mink</dc:creator>
      <dc:date>2018-07-16T13:49:24Z</dc:date>
    </item>
    <item>
      <title>Re: Associated Trustpoints question when installing identity certificate via ASDM</title>
      <link>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416361#M950658</link>
      <description>&lt;P&gt;Hi Dennis&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When you save the identity certificate from the old firewall isnt the rsa key included?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the certificate will be used for remote access vpn&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jul 2018 14:22:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416361#M950658</guid>
      <dc:creator>faghouri83</dc:creator>
      <dc:date>2018-07-16T14:22:52Z</dc:date>
    </item>
    <item>
      <title>Re: Associated Trustpoints question when installing identity certificate via ASDM</title>
      <link>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416544#M950659</link>
      <description>&lt;P&gt;NO, saving a cert is not the same as saving key, those are two distinctly different things.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;however,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;try this:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.fragmentationneeded.net/2015/04/exporting-rsa-keys-from-cisco-asa.html" target="_blank"&gt;https://www.fragmentationneeded.net/2015/04/exporting-rsa-keys-from-cisco-asa.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;the PKCS does include the private key.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jul 2018 20:45:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/associated-trustpoints-question-when-installing-identity/m-p/3416544#M950659</guid>
      <dc:creator>Dennis Mink</dc:creator>
      <dc:date>2018-07-16T20:45:58Z</dc:date>
    </item>
  </channel>
</rss>

