cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1794
Views
1
Helpful
7
Replies

Cisco FDM Default web server certificate update

Shazz
Level 1
Level 1

Hi All,

Is there any Cisco step by step guidance on How update the Default web server certificate via FDM? currently when I logged into FDM via browser the connection is not secure.

Thanks.

7 Replies 7

Keep it not secure' I think it not easy task and any wrong steps can lead to loss connection to FTD.

MHM

Shazz
Level 1
Level 1

Hi @MHM Cisco World,

The cert is expiring in Feb, So customer has raised a request to update it.

The below needs updating.

DefaultInternalCertificate

DefaultWebserverCertificate

Thanks.

Doesn’t mention if you can replace the default or not

You can renew the self-signed certificate (will still indicate as "not secure" in your browser since it's not from a trusted issuing CA) or replace it with a certificate issued from a trusted CA (internal or public) based on a CSR that your generate.

Almost nobody goes to this trouble for FDM only though since it's usually only a small handful of direct sysadmins that log into it and they understand the (lack of) risk using a self-signed certificate entails.

Hi, did you manage to resolve the issue? I’m encountering the same issue, unsure if I can replace the existing default all together or not.

Hi @Bobileno, This is what I did and this fixed the issue.

Log into xxx- fwl-01

STEP -1: Generate Self signed Certificate

Objects > Certificates > Add Internal Certificate > Self-signed certificate
Name: firepower-webGUI
Country: United Kingdom
State or Province:....
Locality or City:.....
Organization: <Organization name>
Common Name: firepower
By Date

> SAVE

> DEPLOY


STEP -2

FDM HOME > System settings > Management access > Management web Server

SELECT firepower-webGUI from the dropdown

>SAVE
>DEPLOY

Hope this helps.

Review Cisco Networking for a $25 gift card