<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Problems uploading webauthcert to mobility express controller in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546676#M238122</link>
    <description>&lt;P&gt;My suggestion is to post the link of the guide you followed.&amp;nbsp; With certificates, it also depends on how you generate the CSR and what tool and version you used. v8.0 is old and many things have changed between that version and v8.10.&amp;nbsp; So this doesn't surprise me that it works with one and not the other.&lt;/P&gt;</description>
    <pubDate>Mon, 07 Feb 2022 15:59:38 GMT</pubDate>
    <dc:creator>Scott Fella</dc:creator>
    <dc:date>2022-02-07T15:59:38Z</dc:date>
    <item>
      <title>Problems uploading webauthcert to mobility express controller</title>
      <link>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546589#M238118</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a mobility express controller in the 8.10 firmware version. I am trying to upload the certificate using the cli after following the defined proccess for getting the encoded pem file.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have been able to do it in a 8.0 version wireless controller. So the certificate seems to be correct.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Troublehsooting the proccess in the aironet espress controller I get the follwing errors:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TFTP receive complete... Installing Certificate.&lt;BR /&gt;*TransferTask: Nov 13 01:48:16.557: RESULT_CODE:13&lt;/P&gt;&lt;P&gt;*TransferTask: Nov 13 01:48:20.557: Adding cert (9165 bytes) with certificate key password.&lt;/P&gt;&lt;P&gt;*TransferTask: Nov 13 01:48:20.557: Add WebAuth Cert: Adding certificate &amp;amp; private key using password 1234&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.557: Add ID Cert: Adding certificate &amp;amp; private key using password 1234&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.557: Add Cert to ID Table: Adding certificate (name: bsnSslWebauthCert) to ID table using password 1234&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.557: Add Cert to ID Table: Decoding PEM-encoded Certificate (verify: YES)&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.557: Decode &amp;amp; Verify PEM Cert: Cert/Key Length was 0, so taking string length instead&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.557: Decode &amp;amp; Verify PEM Cert: Cert/Key Length 9165 &amp;amp; VERIFY&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.568: Decode &amp;amp; Verify PEM Cert: X509 Cert Verification return code: 0&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.568: Decode &amp;amp; Verify PEM Cert: X509 Cert Verification result text: certificate is not yet valid&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.568: Decode &amp;amp; Verify PEM Cert: Error in X509 Cert Verification at 0 depth: certificate is not yet valid&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.569: Add Cert to ID Table: Error decoding (verify: YES) PEM certificate&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.569: Add ID Cert: Error decoding / adding cert to ID cert table (verifyChain: TRUE)&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.569: Add WebAuth Cert: Error adding ID cert&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.569: RESULT_STRING: Error installing certificate.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;*TransferTask: Nov 13 01:48:20.569: RESULT_CODE:12&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Error installing certificate.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have searched for a while but I didn't find the same issue in other topics. Cooul anybody help me?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Feb 2022 13:26:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546589#M238118</guid>
      <dc:creator>unaiabrisketa</dc:creator>
      <dc:date>2022-02-07T13:26:58Z</dc:date>
    </item>
    <item>
      <title>Re: Problems uploading webauthcert to mobility express controller</title>
      <link>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546608#M238119</link>
      <description>&lt;P&gt;Both controllers have the same time setup?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;From the error log "&lt;SPAN&gt;X509 Cert Verification result text: certificate is not yet valid".&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Verify the valid from date and time on the certificate&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;CJ&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;/** Please rate useful responses **/&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Feb 2022 14:10:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546608#M238119</guid>
      <dc:creator>jagan.chowdam</dc:creator>
      <dc:date>2022-02-07T14:10:14Z</dc:date>
    </item>
    <item>
      <title>Re: Problems uploading webauthcert to mobility express controller</title>
      <link>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546676#M238122</link>
      <description>&lt;P&gt;My suggestion is to post the link of the guide you followed.&amp;nbsp; With certificates, it also depends on how you generate the CSR and what tool and version you used. v8.0 is old and many things have changed between that version and v8.10.&amp;nbsp; So this doesn't surprise me that it works with one and not the other.&lt;/P&gt;</description>
      <pubDate>Mon, 07 Feb 2022 15:59:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546676#M238122</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2022-02-07T15:59:38Z</dc:date>
    </item>
    <item>
      <title>Re: Problems uploading webauthcert to mobility express controller</title>
      <link>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546859#M238132</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;As&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/319960"&gt;@jagan.chowdam&lt;/a&gt;&amp;nbsp;stated, it looks like your controller having issues is showing the wrong date &amp;amp; time as "&amp;nbsp;&lt;SPAN&gt;Nov 13 01:48:20.569 " and thus the cert is showing as not yet valid in the logs.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Please validate the time on the controller and if necessary, set this to the correct time and try uploading the cert again&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Feb 2022 19:45:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4546859#M238132</guid>
      <dc:creator>Prince.O</dc:creator>
      <dc:date>2022-02-07T19:45:28Z</dc:date>
    </item>
    <item>
      <title>Re: Problems uploading webauthcert to mobility express controller</title>
      <link>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4547549#M238177</link>
      <description>&lt;P&gt;Can you show the EXACT commands you used to update the cert?&lt;/P&gt;
&lt;P&gt;Enable these debugs before running the commands and capture the debug logs:&lt;/P&gt;
&lt;P&gt;debug transfer all enable&lt;/P&gt;
&lt;P&gt;debug pm pki enable&lt;/P&gt;
&lt;P&gt;Afterwards disable debug with "debug disable-all".&lt;/P&gt;
&lt;P&gt;We use the same cert across 8.0, 8.5 and 8.10 WLCs (CSR generated using OpenSSL)&lt;/P&gt;
&lt;P&gt;The error message about "not yet valid" is misleading - almost anything that causes the cert update to fail can result in that error message - including incorrect password.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Feb 2022 15:30:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/problems-uploading-webauthcert-to-mobility-express-controller/m-p/4547549#M238177</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2022-02-08T15:30:17Z</dc:date>
    </item>
  </channel>
</rss>

