<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Certificate on 2504 controller in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078241#M148804</link>
    <description>&lt;P&gt;&lt;SPAN&gt;We have setup a WLC with a specific Wlan and SSID. When we created this WLAN we enabled Web auth with a redirect page. We also are using LDAP to authenticate our users. Now when client machines connect to the SSID it is prompting them for a certificate. The page is&amp;nbsp; pointing &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://1.1.1.1" target="_blank"&gt;https://1.1.1.1&lt;/A&gt;&lt;SPAN&gt;. how can we add a ceritificate so this message will go away? On the 2504 underneath Security, I see certificate and LSC. Can we use an internal CA server?&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 04 Jul 2021 06:15:40 GMT</pubDate>
    <dc:creator>langstonw</dc:creator>
    <dc:date>2021-07-04T06:15:40Z</dc:date>
    <item>
      <title>Certificate on 2504 controller</title>
      <link>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078241#M148804</link>
      <description>&lt;P&gt;&lt;SPAN&gt;We have setup a WLC with a specific Wlan and SSID. When we created this WLAN we enabled Web auth with a redirect page. We also are using LDAP to authenticate our users. Now when client machines connect to the SSID it is prompting them for a certificate. The page is&amp;nbsp; pointing &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://1.1.1.1" target="_blank"&gt;https://1.1.1.1&lt;/A&gt;&lt;SPAN&gt;. how can we add a ceritificate so this message will go away? On the 2504 underneath Security, I see certificate and LSC. Can we use an internal CA server?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 06:15:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078241#M148804</guid>
      <dc:creator>langstonw</dc:creator>
      <dc:date>2021-07-04T06:15:40Z</dc:date>
    </item>
    <item>
      <title>Certificate on 2504 controller</title>
      <link>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078242#M148805</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes you can use your own CA, but then you would need to provide your Root cert to them.&amp;nbsp; You can also purchase one from one of the well known CA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00806e367a.shtml"&gt;http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00806e367a.shtml&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH, &lt;BR /&gt;Steve &lt;BR /&gt; &lt;BR /&gt;------------------------------------------------------------------------------------------------ &lt;BR /&gt;Please remember to rate useful posts, and mark questions as answered&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Dec 2012 17:08:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078242#M148805</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2012-12-20T17:08:37Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate on 2504 controller</title>
      <link>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078243#M148806</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is one way&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a0080a77592.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a0080a77592.shtml&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Or else if your running v7.2 or newer, you can disable the https for the WLC CLI&lt;BR /&gt;&lt;BR /&gt;config network web-auth secure web disable&lt;BR /&gt;&lt;BR /&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Dec 2012 17:08:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078243#M148806</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2012-12-20T17:08:43Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate on 2504 controller</title>
      <link>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078244#M148807</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I wouldn't use your internal root CA, because guest users will not trust your CA. That is why it's best to upload a 3rd party trusted cert.&lt;BR /&gt;&lt;BR /&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Dec 2012 17:09:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078244#M148807</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2012-12-20T17:09:49Z</dc:date>
    </item>
    <item>
      <title>Certificate on 2504 controller</title>
      <link>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078245#M148808</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the only part that i am not clear about is the cerfiticate itself.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;from this article:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="active_link" href="http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a0080a77592.shtml" rel="nofollow" style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style: none; outline: none; color: #2f6681; font-family: Arial, verdana, sans-serif;"&gt;http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a0080a77592.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;in step 3 when generating a CSR:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="color: #000000; font-size: 12px;"&gt;Note: &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;It is important that you provide the correct Common Name. Ensure that the host name that is used to create the certificate (Common Name) matches the Domain Name System (DNS) host name entry for the virtual interface IP on the WLC and that the name exists in the DNS as well. Also, after you make the change to the VIP interface, you must reboot the system in order for this change to take effect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;if the browser redirects to &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://1.1.1.1"&gt;http://1.1.1.1&lt;/A&gt;&lt;SPAN&gt; how can you perform this step&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Dec 2012 18:02:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078245#M148808</guid>
      <dc:creator>langstonw</dc:creator>
      <dc:date>2012-12-20T18:02:07Z</dc:date>
    </item>
    <item>
      <title>Certificate on 2504 controller</title>
      <link>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078246#M148809</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You create a certificate using for example this FQDN: guestwifi.yourdomain.com.&amp;nbsp; Then in DNS, you need to resolve that FQDN to the VIP which you have as 1.1.1.1.&amp;nbsp; Now the DNS server that has to have this entry is the DNS sever that the users will be getting through dhcp.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks, &lt;BR /&gt; &lt;BR /&gt;Scott &lt;BR /&gt; &lt;BR /&gt;Help out other by using the rating system and marking answered questions as "Answered"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Dec 2012 18:17:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/certificate-on-2504-controller/m-p/2078246#M148809</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2012-12-20T18:17:41Z</dc:date>
    </item>
  </channel>
</rss>

