cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
912
Views
0
Helpful
1
Replies

ASA Certificate errors

leach_stuart
Level 1
Level 1

I have imported a trusted wildcard certificate to a Cisco ASA 5510, that included the root and internediated CA Certs.

Everything seems to have gone well but when I run a Nessus Vulnerability scan I receive the following.

|

|--- *** ERROR:

|--- *** The issuing certificate is missing the key usage extension,

|--- *** which is required for all certificates that sign others.

 

I have checked the certificates and all appears to be OK. 

The same Certificates have been deployed to some Servers and are fine when scanned.

I have spoken to the CA, they pointed me to other root certificates which I have applied, but I still receive the same error.

Any suggestions would be greatly appreciated. 

1 Reply 1

Marcin Latosiewicz
Cisco Employee
Cisco Employee

Hi,

Do you mind sharing the the certs and your trustpoint settings (show run crypto ca trust)?

Mind that I do not need RSA keys, just the DER or base64 of identity and subsequent certs.

Marcin

Review Cisco Networking for a $25 gift card