cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1548
Views
0
Helpful
4
Replies

CUCM 11.0 Multi-SAN Certificate is not working

After Configuring Tomocat Multi-SAN Certificate configuration on CUCM and IMP Cluster I am still getting the following error message when trying to access any of the CUCM Servers from any browser :

 

Security certificate issues "The security certificate presented by this website was issued for a different website's address"

 

- We Configured the Certificates as per the Cisco Documentation

- We restarted the Tomcat on all  servers.

- We Uploaded the Root and Intermediate Certificate as Tomcat Trust on all servers.

- We Restarted the TFTP Service on the TFTP Server

- Multi-SAN Certificate are replicated across all cluster.

- On the CLient PC we can see that the certificate have the Comman name UCMPUB-MS.example.lab

 and the SAN Names as the FQDN of all CUCM and IMP nodes.

- DNS are deployed for all nodes in both Forward and Reverse Zone.

 

 

Any Clue on how to investigate this,,,

 

Thanks,

4 Replies 4

Chris Deren
Hall of Fame
Hall of Fame

What CA was used to sign the cert? Do the root and intermediate certs exist on the client PC? When browsing the servers are you entering the FULL FQNDs as defined on the certs as SANs (they need to match exactly).

- What CA was used to sign the cert? Internal CA 

- Do the root and intermediate certs exist on the client PC? yes

- When browsing the servers are you entering the FULL FQNDs as defined on the certs as SANs (they need to match exactly).? Yes ,Exactly


Thanks,,,

Which Browser are you connecting from? Did you try different browsers?

All browsers (IE Firefox chrome)