cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1554
Views
0
Helpful
3
Replies

ASDM certificate warning

Beat.Traber
Level 1
Level 1

Hi

I manage a couple of FWSMs and ASAs using ASDM.

Recently I get warnings on some of these devices  (but only on some).

The warnings say, that the certificate is not valid and that in a future Java-release  ASDM will be blocked for this reason (because of some missing attribute in the JAR file).

I have 2 FWSM one of which brings this warning whereas the other one doesn't. Both use the same versions:

FWSM Firewall Version 4.1(6) <context>

Device Manager Version 6.2(2)F

How do I proceed? I'm not at all keen losing ASDM-connectivity...

Thanks for any suggestions.

Beat

1 Accepted Solution

Accepted Solutions

Julio Carvajal
VIP Alumni
VIP Alumni

Here is the thing:

Every single time a FWSM, ASA firewall reloads it will generate a self-signed certificate so you will be prompted every time there is a new one as it's not installed on your PC certificate store.

What to do:

The easy and cheap way

Create a permanent-Self signed certificate on the devices and then when you receive the prompt for the next time save it in your

Rate all of the helpful posts!!!

Regards,

Jcarvaja

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

View solution in original post

3 Replies 3

Julio Carvajal
VIP Alumni
VIP Alumni

Here is the thing:

Every single time a FWSM, ASA firewall reloads it will generate a self-signed certificate so you will be prompted every time there is a new one as it's not installed on your PC certificate store.

What to do:

The easy and cheap way

Create a permanent-Self signed certificate on the devices and then when you receive the prompt for the next time save it in your

Rate all of the helpful posts!!!

Regards,

Jcarvaja

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

I tried the easy and cheap way and it works.

Thanks for your help.

Beat

Hello,

Glad to know that

As a thanks remember to follow my website and also like my facebook page hehe

Rate all of the helpful posts!!!

Regards,

Jcarvaja

Follow me on http://laguiadelnetworking.com

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
Review Cisco Networking for a $25 gift card