08-16-2023 09:07 PM
While trying to load new CA cert to ASA via ASDM found an issue. Manually installing CA cert, was able to add the CA cert but did not recognize the Identity Cert information. Using this document and still could not load certs since the Identity cert never showed up in ASDM. Followed instructions until step 11, afterwards nothing worked. I added a trustpoint to try to manually.
08-17-2023 12:14 AM
what kind of cert for this ? for VPN ?
follow below guide :
08-17-2023 05:07 AM
08-17-2023 05:42 AM
Have you downloaded and installed the CA certificate chain?
Run the following commands:
show crytpo ca trustpoints GD_2024
show crypto ca certificate GD_2024
if the ca trustpoint is showing as Not Authenticated you could try running "crypto ca authenticate GD_2024" without the quotes. This should bind the CA certificate to the identity certificate.
08-17-2023 06:49 AM
08-17-2023 07:24 AM
First off, I just assumed that this is the certificate you were talking about as it was highlighted and from the name. From the looks of it you have created a self-signed certificate as there is no Issuer Name. I would expect to see GoDaddy in the Issuer Name section.
How did you create the CSR ? and did you get it signed by GoDaddy yourself or did you send it to someone else to do the signing?
08-17-2023 08:26 AM
08-17-2023 01:23 PM
Since it seems like you want to use a 3rd party cert for the VPN connections, I would suggest creating a new CSR, get it signed by GoDaddy, and then download the signed identity cert along with the full certificate chain (i.e. any and all root, intermediate and subordinate certificates). First import all the CA trusted certificates, and then complete the CSR binding. I suggest doing all this via the ASDM as it is a much easier process.
Once you have imported the identity certificate, you can replace the certificate currently being used by AnyConnect and then test the connection.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide