01-07-2025 08:47 AM
Hello Community,
I'd like to activate syslog via TLS on Cisco Secure Email gateway.
Unfortunately it does not work and fails with the error “Error in validating peerserver certificate.” & "unable to get local issuer certificate.“.
I‘ve done the following:
created & uploaded a custom gateway certificate (*.p12) from internal CA and set the intermediate CA root certificate
uploaded our internal custom root CA certificate on the gateway to the custom CA list
created log subscription and set target host
Do I need to consider further options or have I done something wrong?
I can rule out a misconfiguration on the syslog server, because TLS already works fine with other systems.
Thanks for helping!
Greetings!
01-07-2025 09:02 AM
01-07-2025 10:04 AM
Sorry, my mistake.
We do not have an intermediate CA in this case. I've removed it.
Device certificate was issued directly by our root CA.
Unfortunately, the error still exists.
01-07-2025 10:13 AM
01-07-2025 10:57 AM - edited 01-07-2025 11:31 AM
Thank you! I think that's the problem.
There is a certificate from another CA.
I'll check this and get back to you.
01-09-2025 07:47 AM
I want to configure my Cisco Email Gateway to Send logs over TLS to syslog server can you please tell me which certificate to place on email gateway and which one to place on syslog server?
Anyone worked on such scenario.
01-09-2025 08:02 AM
01-09-2025 08:13 AM
Im forwarding logs from Cisco ESA to Qradar on port 6514.
I created self signed cert. imported CA in ESA using gui in PKCS#12 format.
At Qradar side i uploaded Server certificate and private key.
but still im getting below error on syslog server.
An IOException occurred during SSL Socket Handshake with /103.161.xx.xx:4262 Closing socket
01-09-2025 08:22 AM
Uploaded Self-signed CA Certificate Showing in Appliance Certificates on ESA in Network > Certificates > Appliance Certificates.
is it normal.
01-09-2025 01:52 PM
The gateway's certificate was signed by the wrong CA and I also uploaded the wrong root certificate. TLS is now working. Thank you!
01-09-2025 06:18 PM
@arwho how you made this setup work. Which certificate you installed on syslog server. And which certificates you installed on Cisco Email Gateway
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide