02-27-2015 11:50 AM - edited 03-10-2019 10:30 PM
Hello guys,
My attempt an upgrade bombed out pretty quick due to an expired certificate in the certificate store. However, these certs are disabled because I've never been able to delete them due to the below error as I can not find what they would be attached to. I've looked in SCEP, but I'm not sure where else one should look. This is a distributed deployment, fyi.
Thanks,
Raun
03-02-2015 01:04 AM
Open a TAC case and for the procedure to remove the certificate.
04-17-2016 05:07 AM
Hello mohanak,
I am facing an issue when upgrading from ISE 1.3 to 2.0. It gives the below error
System certificate with friendly name 'ISE-PAP02.sss.LOCAL#sss-HQ-DCSRV-01-CA#00001' is invalid: The certificate has expired.
% Error: One or more system certificates are invalid (see above), please update with valid system certificate(s) before continuing. Upgrade cannot continue.
Starting application after rollback...
I tried deleting the expired certificate from the node and got the warning like "admin certificate cannot be deleted". Please find the attached.
Is there any way that we can delete the certificate.
01-18-2017 07:58 AM
Hello,
Did you find a way to accomplish this task ?
Feedback will be very appreciated.
01-18-2017 08:06 AM
Hello,
We opened a TAC and they send a TAC shoot file to delete the expired certificates from the Linux root level. Better involve TAC for this activity.
01-23-2017 03:26 AM
Hello,
Thanks, my ISE was in 2.0 with an expired SSC.
After generating a new cert with Admin role, I was able to delete the expired certificate.
08-01-2019 02:29 AM
you can't delete.
You need to create or renew the Certificate and import it, it will replace the old expired Certificate
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide