annuler
Affichage des résultats de 
Rechercher plutôt 
Vouliez-vous dire : 
cancel
808
Visites
0
Compliment
5
Réponses

Firepower 2110: Certificate issue

jds5
Level 1
Level 1

Hello,

Following a DNS configuration change, the certificate applied to internal and public interfaces is no longer applied.

Can you tell me if this behavior is "normal"?
The version concerned is 9.19(1)31

Best Regards,

 

5 RÉPONSES 5

@jds5 

 It depends. What was exactly the DNS change? All the certificates have a common name which must match with the URL you use or the IP address if that is the case. If you assigned the certificate with on URL on the common name and them you made changes on the DNS resolucion, the certificate will fail.

jds5
Level 1
Level 1

Hello Flavio, 

In fact,I just modified the IP addresses saved in the firewall configuration, thats all.

BR,

 

Need to check how the certificate was created. If it was create using the IP address as common name, it will fail after the IP change. Need to create a new cert with the right IP.

How cert is apply? Cert is use only by webvpn or some service or ssl policy

Can yoh more elaborate for which these cert use for 

MHM

jds5
Level 1
Level 1

Hello,

The certificate is applied to interfaces with SSL.

Here is the command that is applied on each interface:

ssl trust-point ASDM_TrustPoint4 publique vpnlb-ip

BR,