10-29-2021 12:34 AM
I wanna know whether I have to use external CA to renew some of system certificate and internal root CA.
Default system certificates, for pxgrid and ISE messaging service, are not self-signed ones, which, I know, means that these expiration due can not be extended. These must be renewed.
The Pxgrid certificate is signed by endpoint sub CA which is also signed by ..... root CA which is self-signed but with expiration date.
I have browed to find the way to solve the expiration problem , but there seems to be none of resolvable way but using External CA since ISE internal CA do not have ability to sign CSR.
Solved! Go to Solution.
10-29-2021 02:25 AM
Hi @naoki_Japan ,
please take a look at: Administration > System > Certificates > Certificate Management > Certificate Signing Requests > Generate Certificate Signing Requests (CSR).
Note: Enable Certificate Authority at Administration > System > Certificates > Certificate Authority > Internal CA Settings.
Hope this helps !!!
10-29-2021 02:25 AM
Hi @naoki_Japan ,
please take a look at: Administration > System > Certificates > Certificate Management > Certificate Signing Requests > Generate Certificate Signing Requests (CSR).
Note: Enable Certificate Authority at Administration > System > Certificates > Certificate Authority > Internal CA Settings.
Hope this helps !!!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide