<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Webauth Certificate install problem wlc 5508 in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996336#M4708</link>
    <description>Under Management - http-HTTPS, you have the the "current certificate" listed, is that indeed the correct certificate you see there?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
    <pubDate>Tue, 10 Dec 2019 10:12:08 GMT</pubDate>
    <dc:creator>patoberli</dc:creator>
    <dc:date>2019-12-10T10:12:08Z</dc:date>
    <item>
      <title>Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3993329#M4697</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;I have a problem with install a new webauth certificate on wlc 5508.&lt;/P&gt;&lt;P&gt;I created a new file like in this document:&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;From Gui and from cli when i try to download and install it i got an success information.&lt;/P&gt;&lt;P&gt;File transfer operation completed successfully.&amp;nbsp;For Certificates to take effect and SSL to work, you need to reboot system. &lt;A href="https://192.168.40.112/screens/base/sys_reset.html" target="_blank"&gt;Click Here&lt;/A&gt; to get redirected to reboot page.&amp;nbsp;&lt;/P&gt;&lt;P&gt;After reboot of the controller i still see an old certyficate.&lt;/P&gt;&lt;P&gt;When i was enabled an debug i got something like that, but still dont know what is the cause and why new certificate is not installed correctly.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;*TransferTask: Dec 03 13:33:43.187: Memory overcommit policy changed from 0 to 1

*TransferTask: Dec 03 13:33:43.187: RESULT_STRING: TFTP Webauth cert transfer starting.


TFTP Webauth cert transfer starting.
*TransferTask: Dec 03 13:33:43.187: RESULT_CODE:1

*TransferTask: Dec 03 13:33:47.222: TFTP: Binding to remote=192.168.40.100

*TransferTask: Dec 03 13:33:47.276: TFP End: 12043 bytes transferred (0 retransmitted packets)

*TransferTask: Dec 03 13:33:47.276: tftp rc=0, pHost=192.168.40.100 pFilename=WLAN5508/final_5508.pem
        pLocalFilename=cert.p12

*TransferTask: Dec 03 13:33:47.333: RESULT_STRING: TFTP receive complete... Installing Certificate                                                              .

*TransferTask: Dec 03 13:33:47.333: RESULT_CODE:13


TFTP receive complete... Installing Certificate.
*TransferTask: Dec 03 13:33:51.335: Adding cert (11947 bytes) with certificate key password.

*TransferTask: Dec 03 13:33:51.335: Add WebAuth Cert: Adding certificate &amp;amp; private key using password PASSWORD
*TransferTask: Dec 03 13:33:51.335: Add ID Cert: Adding certificate &amp;amp; private key using password PASSWORD
*TransferTask: Dec 03 13:33:51.336: Add Cert to ID Table: Adding certificate (name: bsnSslWebauthCert) to ID table using password PASSWORD
*TransferTask: Dec 03 13:33:51.336: Add Cert to ID Table: Decoding PEM-encoded Certificate (verify: YES)
*TransferTask: Dec 03 13:33:51.336: Decode &amp;amp; Verify PEM Cert: Cert/Key Length was 0, so taking string length instead
*TransferTask: Dec 03 13:33:51.336: Decode &amp;amp; Verify PEM Cert: Cert/Key Length 11947 &amp;amp; VERIFY
*TransferTask: Dec 03 13:33:51.365: Decode &amp;amp; Verify PEM Cert: X509 Cert Verification return code: 1
*TransferTask: Dec 03 13:33:51.365: Decode &amp;amp; Verify PEM Cert: X509 Cert Verification result text: ok
*TransferTask: Dec 03 13:33:51.367: Add Cert to ID Table: Decoding PEM-encoded Private Key using password PASSWORD
*TransferTask: Dec 03 13:33:51.369: Add Cert to ID Table: Adding cert &amp;amp; key to ID cert table; current/max: 5/8
*TransferTask: Dec 03 13:33:51.369: sshpmGetIdCertIndex: called to lookup cert &amp;gt;bsnSslWebauthCert&amp;lt;

*TransferTask: Dec 03 13:33:51.370: sshpmGetIdCertIndex: found match in row 4

*TransferTask: Dec 03 13:33:51.370: Add Cert to ID Table: Deleting bsnSslWebauthCert (row 4) from ID cert table
*TransferTask: Dec 03 13:33:51.370: Free Row in ID Table: Freeing OpenSSL cert (X509 fn: 0x2ac498c8 | DER fn: 0x2ab7e3c8) from ID cert table (row 4)
*TransferTask: Dec 03 13:33:51.370: Free Row in ID Table: Freeing OpenSSL key (EVP_PKEY fn: 0x2ac32030 | DER fn: 0x2ab7e3c8) from ID cert table (row 4)
*TransferTask: Dec 03 13:33:51.371: Add Cert to ID Table: Adding new bsnSslWebauthCert cert &amp;amp; key to row 4 of ID cert table
*TransferTask: Dec 03 13:33:51.371: Add ID Cert: Writing DER-encoded ID cert to file /mnt/application/bsnSslWebauthCert.crt
*TransferTask: Dec 03 13:33:51.371: sshpmWriteCredentialFile: called to write &amp;lt;/mnt/application/bsnSslWebauthCert.crt&amp;gt;; certptr 0x2c49c8f0, length 1533

*TransferTask: Dec 03 13:33:51.372: Add ID Cert: Writing DER-encoded ID private key to file /mnt/application/bsnSslWebauthCert.prv
*TransferTask: Dec 03 13:33:51.372: sshpmWriteCredentialFile: called to write &amp;lt;/mnt/application/bsnSslWebauthCert.prv&amp;gt;; certptr 0x2c49d124, length 1192

*TransferTask: Dec 03 13:33:51.373: Add ID Cert: Unlinking previously created ID PEM-encoded PKCS12 file webauth_p12.pem
*TransferTask: Dec 03 13:33:51.374: Add ID Cert: Created PEM-encoded ID PKCS12 file webauth_p12.pem
*TransferTask: Dec 03 13:33:51.374: RESULT_STRING: Certificate installed.
             Reboot the switch to use new certificate.


*TransferTask: Dec 03 13:33:51.374: RESULT_CODE:11

*TransferTask: Dec 03 13:33:51.376: Memory overcommit policy restored from 1 to 0


Certificate installed.
                        Reboot the switch to use new certificate.


(Cisco Controller) &amp;gt;&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 18:23:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3993329#M4697</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2021-07-05T18:23:07Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3993933#M4698</link>
      <description>You don't see the new certificate after a reboot, right? &lt;BR /&gt;Because the installation indeed looks good.&lt;BR /&gt;&lt;BR /&gt;What software is running on the WLC? Maybe you're hitting a bug.</description>
      <pubDate>Thu, 05 Dec 2019 07:40:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3993933#M4698</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-05T07:40:29Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3994696#M4699</link>
      <description>&lt;P&gt;Yes, i dont see a new cerfiticate after reboot. I still have a valid old certificate but i dont think it's matter.&lt;/P&gt;&lt;P&gt;After reboot when i go to Web Authentication Certificate i see&lt;BR /&gt;Current Certificate:&amp;nbsp;&lt;BR /&gt;valid:From Dec 15 13:36:41 2016 GMT Until Dec 15 13:36:41 2019 GMT&lt;/P&gt;&lt;P&gt;My software version is&amp;nbsp;8.3.143.0&lt;/P&gt;</description>
      <pubDate>Fri, 06 Dec 2019 10:36:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3994696#M4699</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-06T10:36:48Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3994728#M4700</link>
      <description>Process looks absolutely correct. &lt;BR /&gt;Can you validate once again that the file WLAN5508/final_5508.pem is indeed the new and not an old file?&lt;BR /&gt;Your uploaded cert is correctly chained?&lt;BR /&gt;&lt;BR /&gt;Manual: &lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html&lt;/A&gt;</description>
      <pubDate>Fri, 06 Dec 2019 11:33:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3994728#M4700</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-06T11:33:13Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995770#M4701</link>
      <description>&lt;P&gt;I'm shure that was new certificat. I found in the internet information how to create new certificate manually not using pkcs12 commands and it worked. I was able to upload new certificate and after reboot i have properly value of this certificate. Now i have another problem. I cant use https in gui only http. I disabled and enabled https, also genereted a new local certificate but it doesnt help. For now i can only use http protocol.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Dec 2019 13:28:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995770#M4701</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-09T13:28:46Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995799#M4702</link>
      <description>What error message do you get in the browser?</description>
      <pubDate>Mon, 09 Dec 2019 14:04:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995799#M4702</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-09T14:04:45Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995819#M4703</link>
      <description>I got something like that:&lt;BR /&gt;This site is unreachable. Server has refused the connection.&lt;BR /&gt;ERR_CONNECTION_REFUSED</description>
      <pubDate>Mon, 09 Dec 2019 14:42:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995819#M4703</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-09T14:42:46Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995831#M4704</link>
      <description>Interesting, could you try it with a different browser? If you also get it, then the WLC doesn't like the certificate for the https process, for whatever reason.</description>
      <pubDate>Mon, 09 Dec 2019 14:55:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995831#M4704</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-09T14:55:16Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995833#M4705</link>
      <description>I checked on chrome, firefox and opera and on the all browser is the same result. I cant use https to login via GUI</description>
      <pubDate>Mon, 09 Dec 2019 14:58:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995833#M4705</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-09T14:58:19Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995859#M4706</link>
      <description>Under Management - HTTP HTTPS, can you enable/disable the following option and test again:&lt;BR /&gt;WebAuth SecureWeb</description>
      <pubDate>Mon, 09 Dec 2019 15:57:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995859#M4706</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-09T15:57:27Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995905#M4707</link>
      <description>It doesnt change anything. After disable/enable i still cant use https</description>
      <pubDate>Mon, 09 Dec 2019 16:45:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3995905#M4707</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-09T16:45:41Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996336#M4708</link>
      <description>Under Management - http-HTTPS, you have the the "current certificate" listed, is that indeed the correct certificate you see there?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 10 Dec 2019 10:12:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996336#M4708</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-10T10:12:08Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996349#M4709</link>
      <description>In security-&amp;gt;webauth-&amp;gt;certificate i was uploaded a new ssl certificate for our domain (2019 to 2012). After that i cant use https. In Managment-&amp;gt;http https i see other certificate "Locally Generated" ( Cisco Systems From Dec 9 23:00:01 2019 GMT Until Dec 9 23:00:01 2029 GMT). Earlier it looks the same and https was working.&lt;BR /&gt;Now i have https enabled and ERR_CONNECTION_REFUSED when i try to open an webadmin page.</description>
      <pubDate>Tue, 10 Dec 2019 10:24:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996349#M4709</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-10T10:24:25Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996411#M4710</link>
      <description>&lt;P&gt;I'm a bit out of ideas, as I don't know why it isn't working for you. You could try to re-create the locally generated certificate, that's the one the GUI service uses.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2019 12:20:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996411#M4710</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-10T12:20:55Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996516#M4711</link>
      <description>&lt;P&gt;I tryed to create a new local certificate but this also dont change anything.&lt;/P&gt;&lt;P&gt;I have made a test and install old certificate and https starts working but when i installed the new certificate https stops working.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2019 14:58:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996516#M4711</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-10T14:58:50Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996560#M4712</link>
      <description>I suggest to open a TAC, or maybe somebody else can recommend something. I'm a bit out of ideas.&lt;BR /&gt;&lt;BR /&gt;You did test it with a different PC?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 10 Dec 2019 15:17:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996560#M4712</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-10T15:17:08Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996583#M4713</link>
      <description>Have you used OpenSSL 1.x or the older 0.9x? I think to remember that the 5508 didn't like OpenSSL 1.x created certificates.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 10 Dec 2019 15:42:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3996583#M4713</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-10T15:42:08Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3997807#M4714</link>
      <description>I was used 0.98y OpenSSL</description>
      <pubDate>Thu, 12 Dec 2019 09:53:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3997807#M4714</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2019-12-12T09:53:22Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3998388#M4715</link>
      <description>&lt;P&gt;Pawel,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After enabling secure web and generated the local certificate did you reboot the WLC?&lt;BR /&gt;Usually the WLC need to be rebooted in order to take effect.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The newer browsers sometimes react like this on devices, that do not present any or the proper certificate.&lt;BR /&gt;I had a similar behavior. You can use the WebAuth certificate (If it is a wildcard) to install it in Management-&amp;gt; HTTP-HTTPS and Download the SSL certificate. For this one actually you shouldn't need the chain certificate, only the signed one without the root and intermediate but the WLC should accept it as a chain as well.&lt;BR /&gt;Then reload the WLC and It should start working.&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2019 09:27:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/3998388#M4715</guid>
      <dc:creator>TsvetanVladimirov81607</dc:creator>
      <dc:date>2019-12-13T09:27:20Z</dc:date>
    </item>
    <item>
      <title>Re: Webauth Certificate install problem wlc 5508</title>
      <link>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/4007975#M4716</link>
      <description>&lt;P&gt;I restarted the controller many times without effect.&lt;/P&gt;&lt;P&gt;I dont have an wildcart certifitace.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jan 2020 08:28:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/webauth-certificate-install-problem-wlc-5508/m-p/4007975#M4716</guid>
      <dc:creator>PawelKozerski55944</dc:creator>
      <dc:date>2020-01-08T08:28:47Z</dc:date>
    </item>
  </channel>
</rss>

