cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
220
Views
2
Helpful
3
Replies

SSL certificat installation for Admin Portal only

Hello , 

i have set an FQDN for my ISE Admin Portal , and i want to install the ssl certificat for the HTTPS encryption , 

what can i do to protect only the admin portal web server please

regards 

anfel

3 Replies 3

@anfeldendani1996 the "admin" certificate used for communication between ISE nodes is also used for the admin GUI (portal). So assign the new certificate to the "admin" role. Bear in mind when you change the "admin" certificate the ISE services need to be restarted, so make this change during a change window.

https://community.cisco.com/t5/security-knowledge-base/how-to-implement-digital-certificates-in-ise/ta-p/3630897

https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/217191-configuration-guide-to-certificate-renew.html

 

What exactly do you mean by "protect only the admin portal web server"?

ammahend
VIP Alumni
VIP Alumni

your question is not clear, but if you saying you have installed a certificate signed by a public CA with your admin node FQDN as common name in ISE system certificate for portal use, then you have done the right steps. This is assuming you have a single ISE node, if you have a distributed deployment or multiple nodes, then you need to do more, describe your ISE setup.

-hope this helps-