cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1359
Views
0
Helpful
0
Replies

SSL on WLC

Dima Dvorcovoy
Level 1
Level 1

I need to install our local certificates on our WLC. Failed.

>> https://www.sslsupportdesk.com/cisco-wireless-lan-controller-ssl-installation/# >>https://pvoord.wordpress.com/2012/06/20/importing-3rd-party-certificate-on-cisco-wlc/

>>https://support.quovadisglobal.com/kb/a476/how-do-i-install-a-certificate-onto-cisco-wlan-controller-wlc.aspx

I tried everything from advices above: installed openssl 0.9.8 and did all steps on it (of course, medial certificates are from 1.1).

== wifi.conf ==

[ req ]
default_bits = 2048
default_md = sha512
default_keyfile = wifi.key
prompt = no
encrypt_key = no

distinguished_name = DN

req_extensions = v3_req

[ DN ]
countryName = "BY"

stateOrProvinceName = "xxxx"

localityName = "xxxx"

postalCode = "nnnn"

streetAddress = "aaaa"

organizationName = "aaaa"

organizationalUnitName = "aaaaaaaaaaaaa"

commonName = "*.wifi.xxx"

emailAddress = "email@xxx.by"
[ v3_req ]
subjectAltName = DNS:wifi-a.wifi.xxx,DNS:wifi-b.wifi.xxx,DNS:wifi-c.wifi.xxx,IP:10.0.0.9,IP:10.0.0.10,IP:10.0.0.11

==

Command:

#openssl req -new -config wifi.conf -out wifi.csr
send csr for subscrition >>wifi.cer
#cat wifi.cer ../subca.cer ../rootcert.cer >all.cer
#openssl pkcs12 -export -inkey wifi.key -in all.cer -out wifi.pfx -clcerts -passout "pass:---"
#openssl pkcs12 -in wifi.pfx -out wifi.pem -passin "pass:---" -passout "pass:---"

# telnet wism

wism>transfer
wism transfer> download mode tftp
wism transfer> download datatype webauthcert
wism transfer> download serverip 10.0.0.66
wism transfer> download path /
wism transfer> download filename wifi.pem
wism transfer> download certpassword ---
wism transfer> download start

But I still got an error. What and where to check?

0 Replies 0

Review Cisco Networking for a $25 gift card