cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2752
Views
0
Helpful
2
Replies

Cisco SMA/WSA HTTPS Management Certificate

Abbas Ravat
Level 1
Level 1

Dear Colleagues

I want to Install Certificate on SMA/WSA for HTTPS Management access.

With 'certconfig' command line we can do it, but I need to know following.

 

-Does it require Root CA or Subroot CA Certificate?

-Only want to install for HTTPS Management and not for LDAP, receiving or delivery. If I enter 'N' when asked

Do you want to use one certificate/key for receiving, delivery, HTTPS management access, and LDAPS?

then it asked for inbound certificate pem file.. what is inbound?

 

Please Advice and Thanks in Advance.

2 Replies 2

So, on an SMA, it takes mail inbound and sends mail outbound if its managing ESAs and centralized quarantines. You can use the same cert for all since you are only managing WSAs.

I didn't paste in the intermediate or root cert and it worked ok, but I am using an internal CA and my machines already have these in their cert stores.

Something to note: the cert that gets assigned to https is used for both the management interface and the spam quarantine, so if you use different urls for those, you want the cert to be valid for both, e.g. the appropriate wildcard or SAN cert.(this is not an issue for you since you are just managing WSAs.)

Dear KEN

Thanks for your reply, We also manage ESA's from SMA.

And we want to use CA Signed cert for WSA and SMA HTTPS Management.