cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
681
Views
15
Helpful
3
Replies

tomcat-trust certificate import

m.santangelo
Level 1
Level 1

We started getting alerts about expired VeriSign certificates from some of our nodes, so we went about the process of replacing them on our CUCM nodes.  That process went smoothly.  We no longer see the VeriSign certificate in our CUCM nodes.

 

However, we are now getting alerts from our CUPS servers saying that the Verisign certificate is expired.  I see in the description on both cups and cups-sub that the certificate is imported from from our CUCM node.  Will it automatically re-import, or do I need to add it manually back in the same way I did the CUCM nodes?

 

Thanks,

-Mike

1 Accepted Solution

Accepted Solutions

Chris Deren
Hall of Fame
Hall of Fame

What version is your CUCM/IMP? Prior to 11.5 deleting certs needed to be done separately on each node, so if you are on older version just follow the same procedure you did on your CUCM to delete the old certs.  The new certs should be replicated already in the tomcat-trust.

View solution in original post

3 Replies 3

Chris Deren
Hall of Fame
Hall of Fame

What version is your CUCM/IMP? Prior to 11.5 deleting certs needed to be done separately on each node, so if you are on older version just follow the same procedure you did on your CUCM to delete the old certs.  The new certs should be replicated already in the tomcat-trust.

We're on 10.5. 

 

I was expecting to find a way to trigger the import, but it looks like CUPS picked them up over night.  Thanks! Both CUPS and CUPS-SUB are showing the tomcat-trust from CUCM imported as of this morning.

It should be pretty automatic, perhaps your cluster had some cert notification service issues.As of version 11.5 certs automatically get deleted across cluster as well.  Either way let us know if you have any other questions.  

 

Please rate all useful posts!

Chris