<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Virtual WLC certificate problem in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709535#M5455</link>
    <description>&lt;P&gt;I did everything through this guide:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html&lt;/A&gt;&lt;BR /&gt; &lt;/P&gt;
&lt;P&gt;After first attempt to download the certificate, install was successful but it still show as untrusted in browser.&lt;/P&gt;
&lt;P&gt;So i issued regenerate certificate on WLC under Web Authentication. But i didn't generate new CSR!!!&lt;/P&gt;
&lt;P&gt;CSR is the same for Certificate. Trying to upload the second time this error occurred.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 19 Sep 2018 12:07:29 GMT</pubDate>
    <dc:creator>Ivans.Pavlucenko</dc:creator>
    <dc:date>2018-09-19T12:07:29Z</dc:date>
    <item>
      <title>Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709509#M5453</link>
      <description>&lt;P&gt;A problem&amp;nbsp;occurs when trying to install a WebAuth certificate:&lt;/P&gt;
&lt;P&gt;TransferTask: Sep 19 10:04:47.389: Adding cert (7998 bytes) with certificate key password.&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.389: Add WebAuth Cert: Adding certificate &amp;amp; private key using password&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.389: Add ID Cert: Adding certificate &amp;amp; private key using password&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.389: Add Cert to ID Table: Adding certificate (name: bsnSslWebauthCert) to ID table using password&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.389: Add Cert to ID Table: Decoding PEM-encoded Certificate (verify: YES)&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.389: Decode &amp;amp; Verify PEM Cert: Cert/Key Length was 0, so taking string length instead&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.389: Decode &amp;amp; Verify PEM Cert: Cert/Key Length 7998 &amp;amp; VERIFY&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: Decode &amp;amp; Verify PEM Cert: X509 Cert Verification return code: 1&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: Decode &amp;amp; Verify PEM Cert: X509 Cert Verification result text: ok&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: Add Cert to ID Table: Decoding PEM-encoded Private Key using password&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: Retrieve CSR Key: can't open private key file for ssl cert.&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: Add Cert to ID Table: No Private Key&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: Add ID Cert: Error decoding / adding cert to ID cert table (verifyChain: TRUE)&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: Add WebAuth Cert: Error adding ID cert&lt;/P&gt;
&lt;P&gt;*TransferTask: Sep 19 10:04:47.391: RESULT_STRING: Error installing certificate.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can someone help ?&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 16:12:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709509#M5453</guid>
      <dc:creator>Ivans.Pavlucenko</dc:creator>
      <dc:date>2021-07-05T16:12:14Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709524#M5454</link>
      <description>Is your certificate correctly formatted, or do you have correctly created the CSR on the WLC?&lt;BR /&gt;&lt;BR /&gt;See those error messages: &lt;BR /&gt;*TransferTask: Sep 19 10:04:47.391: Add Cert to ID Table: Decoding PEM-encoded Private Key using password&lt;BR /&gt;*TransferTask: Sep 19 10:04:47.391: Retrieve CSR Key: can't open private key file for ssl cert.&lt;BR /&gt;*TransferTask: Sep 19 10:04:47.391: Add Cert to ID Table: No Private Key&lt;BR /&gt;&lt;BR /&gt;See here for the manual:&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html&lt;/A&gt;&lt;BR /&gt;Also I think there recently was a similar post with the vWLC, where it looked like there was a bug.&lt;BR /&gt;</description>
      <pubDate>Wed, 19 Sep 2018 11:58:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709524#M5454</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2018-09-19T11:58:01Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709535#M5455</link>
      <description>&lt;P&gt;I did everything through this guide:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html&lt;/A&gt;&lt;BR /&gt; &lt;/P&gt;
&lt;P&gt;After first attempt to download the certificate, install was successful but it still show as untrusted in browser.&lt;/P&gt;
&lt;P&gt;So i issued regenerate certificate on WLC under Web Authentication. But i didn't generate new CSR!!!&lt;/P&gt;
&lt;P&gt;CSR is the same for Certificate. Trying to upload the second time this error occurred.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Sep 2018 12:07:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709535#M5455</guid>
      <dc:creator>Ivans.Pavlucenko</dc:creator>
      <dc:date>2018-09-19T12:07:29Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709545#M5456</link>
      <description>I think you will need to generate a new CSR.&lt;BR /&gt;Did you reboot the WLC after you installed the first certificate? This is required.&lt;BR /&gt;Also, what was the reason for the invalid certificate? Wrong hostname, wrong certificate, ....?</description>
      <pubDate>Wed, 19 Sep 2018 12:17:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709545#M5456</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2018-09-19T12:17:54Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709550#M5457</link>
      <description>&lt;P&gt;Yes i did a reboot.&lt;/P&gt;
&lt;P&gt;Certificate from first try did install as i mentioned, but web authentication still was unable to trusted the WLC. So i thought that there may be an issue with the certificate and swap file a few times. In the end none of the Certificate can be installed.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I think i should start over with new CSR &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I was trying to do this on a Virtual WLC , generating CSR from WLC (not through the OpenSSL).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Sep 2018 12:26:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709550#M5457</guid>
      <dc:creator>Ivans.Pavlucenko</dc:creator>
      <dc:date>2018-09-19T12:26:23Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709556#M5458</link>
      <description>&lt;P&gt;Just checked the manual. Please note the caveat that the certificate lacks a SAN if you generate it on the WLC. That means that Chrome will always mark it as not valid!&lt;BR /&gt;So better user Internet Explorer or maybe Edge/Firefox for testing. But if you want to have an accepted one in all browsers, you must use the OpenSSL way and make sure that the SAN is correctly filled out (the URL/Hostname must be in the SAN).&lt;/P&gt;</description>
      <pubDate>Wed, 19 Sep 2018 12:33:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3709556#M5458</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2018-09-19T12:33:22Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3711202#M5459</link>
      <description>&lt;P&gt;The error that you are getting is an incorrect structure in the composed file consisting of the wlc cert, intermediate, root and encryption key. I got the same error in the past when I was following the cisco procedure which is not totally accurate so I created my own.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Sep 2018 15:53:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3711202#M5459</guid>
      <dc:creator>ajc</dc:creator>
      <dc:date>2018-09-21T15:53:24Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3717960#M5460</link>
      <description>&lt;P&gt;We have created a certificate through openssl , and install it successfully but clients on web page still get untrusted certificate.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Certificate on WLC and at the client match.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;But from pictures you can see there problem.&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Chrome_1.png" style="width: 601px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/19567i9CCB4753FAAB71BD/image-size/large?v=v2&amp;amp;px=999" role="button" title="Chrome_1.png" alt="Chrome_1.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Chrome_3.png" style="width: 607px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/19569i31EF42D7B529B1B5/image-size/large?v=v2&amp;amp;px=999" role="button" title="Chrome_3.png" alt="Chrome_3.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Oct 2018 05:13:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3717960#M5460</guid>
      <dc:creator>Ivans.Pavlucenko</dc:creator>
      <dc:date>2018-10-03T05:13:13Z</dc:date>
    </item>
    <item>
      <title>Re: Virtual WLC certificate problem</title>
      <link>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3720770#M5461</link>
      <description>&lt;P&gt;The certification path is missing. Make sure to correctly format the certificate before uploading it.&lt;/P&gt;
&lt;P&gt;Pay special attention to this part in the manual:&amp;nbsp; Option B: Obtain the Final.pem File from a Third-Party CA&lt;/P&gt;</description>
      <pubDate>Mon, 08 Oct 2018 06:18:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/virtual-wlc-certificate-problem/m-p/3720770#M5461</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2018-10-08T06:18:27Z</dc:date>
    </item>
  </channel>
</rss>

