cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
482
Views
0
Helpful
5
Replies

MIC is gone after factory reset all on C9800-L-F-K9

Translator
Community Manager
Community Manager

After entering the factory reset all command on C9800-L-F-K9, I also found that the MIC certificate disappeared.

The device version is 17.12.4.
There was no factory reset config command. How can this happen??

show wireless management trustpoint chassis 1 r0
Trustpoint Name : CISCO_IDEVID_CMCA3_SUDI
Certificate Info : Not Available
Private key Info : Not Available
FIPS suitability : Not Applicable

5 Replies 5

AshSe
VIP
VIP

Hey @Translator 

The issue you're describing is related to the factory reset process on the Cisco Catalyst 9800-L Wireless Controller (C9800-L-F-K9). When you perform a factory reset using the factory-reset all command, it erases all configurations, certificates, and keys, including the MIC (Manufacturing Installed Certificate) and private keys. This behavior is expected because the factory-reset all command is designed to completely wipe the device, restoring it to its factory default state.

Please let me know if you need details on:

  • Why the MIC certificate Disappeared?
  • Why No factory-reset config command was available
  • How to resolve the issue

 

Hope This Helps!!!

AshSe

 

Community Etiquette: 

  1. Insert photos/images inline - don't attach.
  2. Always mark helpful and correct answers, it helps others find what they need.
  3. For a prompt reply, kindly tag @name. An email will be automatically sent to the member.

Translator
Community Manager
Community Manager

Thanks for the reply.

Is there any way to recover MIC??

The factory reset config command disappeared, so do I have to reset it in another way??


@Translator wrote:

Thanks for the reply.

Is there any way to recover MIC??

The factory reset config command disappeared, so do I have to reset it in another way??


Unfortunately, once the MIC (Manufacturing Installed Certificate) is erased during a factory-reset all operation, it cannot be recovered by the user. The MIC is a hardware-bound certificate that is installed during the manufacturing process and stored in the secure storage of the device. When the factory-reset all command is executed, it wipes the secure storage, including the MIC and private keys, and there is no way to recover it locally.

The only way to recover the MIC is to contact Cisco TAC (Technical Assistance Center). Cisco TAC can assist in re-provisioning the device and restoring the MIC certificate.

 

Hope This Helps!!!

AshSe

 

Community Etiquette: 

  1. Insert photos/images inline - don't attach.
  2. Always mark helpful and correct answers, it helps others find what they need.
  3. For a prompt reply, kindly tag @Name. An email will be automatically sent to the member.

 

Translator
Community Manager
Community Manager

@Translator 

Thanks for the quick reply.

There is no factory reset config command, what are the other ways to reset?


@Translator wrote:

@Translator 

Thanks for the quick reply.

There is no factory reset config command, what are the other ways to reset?


The factory-reset config command is not available in all versions of Cisco IOS-XE. In your case, running version 17.12.4, it seems that this command is not present. This could be due to a software bug, a change in the command set, or a feature limitation in this specific version. You can check the release notes for version 17.12.4 to confirm whether this command is supported.

 

As said earlier, you can contact Cisco TAC for MIC recovery.