03-09-2025 07:25 PM
After entering the factory reset all command on C9800-L-F-K9, I also found that the MIC certificate disappeared.
The device version is 17.12.4.
There was no factory reset config command. How can this happen??
show wireless management trustpoint chassis 1 r0
Trustpoint Name : CISCO_IDEVID_CMCA3_SUDI
Certificate Info : Not Available
Private key Info : Not Available
FIPS suitability : Not Applicable
03-09-2025 10:51 PM
Hey @Translator
The issue you're describing is related to the factory reset process on the Cisco Catalyst 9800-L Wireless Controller (C9800-L-F-K9). When you perform a factory reset using the factory-reset all
command, it erases all configurations, certificates, and keys, including the MIC (Manufacturing Installed Certificate) and private keys. This behavior is expected because the factory-reset all
command is designed to completely wipe the device, restoring it to its factory default state.
Please let me know if you need details on:
Hope This Helps!!!
AshSe
Community Etiquette:
03-09-2025 10:59 PM
Thanks for the reply.
Is there any way to recover MIC??
The factory reset config command disappeared, so do I have to reset it in another way??
03-10-2025 12:06 AM
@Translator wrote:
Thanks for the reply.
Is there any way to recover MIC??
The factory reset config command disappeared, so do I have to reset it in another way??
Unfortunately, once the MIC (Manufacturing Installed Certificate) is erased during a factory-reset all
operation, it cannot be recovered by the user. The MIC is a hardware-bound certificate that is installed during the manufacturing process and stored in the secure storage of the device. When the factory-reset all
command is executed, it wipes the secure storage, including the MIC and private keys, and there is no way to recover it locally.
The only way to recover the MIC is to contact Cisco TAC (Technical Assistance Center). Cisco TAC can assist in re-provisioning the device and restoring the MIC certificate.
Hope This Helps!!!
AshSe
Community Etiquette:
03-10-2025 12:13 AM
Thanks for the quick reply.
There is no factory reset config command, what are the other ways to reset?
03-10-2025 01:03 AM
@Translator wrote:
Thanks for the quick reply.
There is no factory reset config command, what are the other ways to reset?
The factory-reset config
command is not available in all versions of Cisco IOS-XE. In your case, running version 17.12.4, it seems that this command is not present. This could be due to a software bug, a change in the command set, or a feature limitation in this specific version. You can check the release notes for version 17.12.4 to confirm whether this command is supported.
As said earlier, you can contact Cisco TAC for MIC recovery.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide