01-09-2024 10:55 AM
I am trying to renew a system Certificate on ISE. This is a CA cert for the Admin, Portal, EAP Authentication, and RADIUS DTLS roles. First I generated a CSR using the generator on ISE. When we try to bind the new cert using the option on the CSR page, we get the message:
"There is one or more trusted certificates(s) with the same subject name and issuer but having a different serial number 'Subject: CN=<CN> - Serial Number: <Serial Number> '. Binding was aborted. For successful binding, you need to remove the other certificates(s) first."
It won't let us remove the previous cert, as it has all of the roles on it. How does one renew this cert?
We are using ISE 3.1.0.
01-09-2024 05:27 PM
check below thread and do the needful to fix the issue :
It won't let us remove the previous cert, as it has all of the roles on it. How does one renew this cert?
if this is associated any place you used, you can not remove, you need to unbind and remove that.
01-29-2024 10:56 AM
Won't unbinding the certificate cause us to lose access to the ISE interface, and cause other issues? Is there
01-30-2024 01:15 AM
Please select one single usage when you import/bind the certificate, and then after the import is completed go back and edit that cert adding the additional required usages. That's the way how I workaround that typically.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide