10-22-2007 12:03 PM - edited 03-10-2019 03:28 PM
We have a Cisco ACS appliance (Cisco 1113), and are having a little trouble getting certificates to work.
I had some instructions on generating a certificate on a windows server and installing it, but this ultimately resulted in a server that we couldn't reach from anywhere (because nobody had an appropriate client certificate) and I had to reload the server.
We can currently get PEAP to work with our windows clients and the server using a self-signed certificate, but for a wider implementation I'm still not sure what certificates need to be generated, which ones need to be placed on the server, which ones need to go on clients, and how to place them on the server and windows clients.
I realize this is a fairly large question, but the different documents I've seen out there are all slightly contradictory, and in any case are all written with the windows implementation of the cisco ACS in mind.
Any help would be most appreciated.
-Ben
01-20-2011 09:13 AM
You don't need to install ACS-server certificate on the client and why we should install server certificate on the client ...?
There is no validay period that is configured by default for third party certificates. Its in your and CA hand, you may go for 10 years.
This option only comes with self-singed where its 1 year and it can not be changed.
On the client you just need Root CA certificate if you want an option "validate server certificate" to be checked.
Setup client for peap authentication
HTH
Jatin
Do rate helpful posts-
01-20-2011 09:32 AM
thank you for fast reply. all thing clear. I have just believed all thing bert.lefevre post above
cisco support forum is wonderfull. I can have my answer very fast by searching and asking
01-20-2011 11:38 AM
Glad, we could help you.
I would appreciate if you can mark this thread resolved so that other's can benefit from it.
Rgds,
Jatin
Do rate helpful posts-
01-20-2011 06:46 PM
I cant do b/c Iam not the owner of this thread.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide