05-26-2021 12:54 PM
Is it possible to configure my Nexus 9k to be a CA server? If so, please provide configuration guide link/URL.
Thank you!
Solved! Go to Solution.
05-27-2021 02:06 AM
Lets discuss facts here, Most of DC envronment have CA/ PKI full infrastructure availble, most time this is good to in Lab environment to be deployed as testing.
But personally i do not suggested in production environment Switch ACT CA/PKI Server, rather i get simple Pi or any Linux box act as PKI Server
or if you have ISE can do the job most of the cisco environment.
yes - i provided the information so you understand correctly before we put in live environment.
05-26-2021 01:04 PM
I used the most of the time cisco router as CA, but nexus never tried, try below links :
05-26-2021 03:13 PM
balaji,
Thank you for the quick reply!
After reading the documentation you posted, it looks like the NX-OS doesn't support the ability to configure the Nexus 9k as a CA Server. The documentation you provided explains how to configure trusted CAs but the ability to configure the Nexus 9k as an actual CA server that would allow me to issue/sign certificates.
Do you agree?
v/r
Willnetwork
05-27-2021 02:06 AM
Lets discuss facts here, Most of DC envronment have CA/ PKI full infrastructure availble, most time this is good to in Lab environment to be deployed as testing.
But personally i do not suggested in production environment Switch ACT CA/PKI Server, rather i get simple Pi or any Linux box act as PKI Server
or if you have ISE can do the job most of the cisco environment.
yes - i provided the information so you understand correctly before we put in live environment.
05-27-2021 04:55 AM
Balaji,
Again, thank you for your reply!
Our SysAdmin will deploy a CA/PKI server on a Windows 2019 server (within our server farm) and it will server as our long-term PKI solution for the infrastructure.
I was hoping to configure my Nexus 9k L3 switches as a CA/PKI server only as a temporary solution for testing purposes, but unfortunately this doesn't seem possible.
Again, thank you for all the useful information and replies.
v/r
Willnetwork
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: