11-22-2020 07:02 PM
We have just deployed our FMC/FTD on 6.6.1 and have A10 sending our logs to Elastic. We have the logs going to the server via UDP but would like to use TLS per our requirements. I know I need certs from a CA and those certs must be the signed by the same CA on both ends of the connection.
Do I need to use the certs that exist on the Elastic server, the ones I pull for the FMC/FTD or does it matter as long as they are signed by a CA and are PKCS12?
ej
11-22-2020 09:56 PM
11-23-2020 04:00 PM
I've been looking for the proper CLI method to import the CA.
I should upload or copy paste the cert info into a file on the FTD then run "openssl pkcs## -info -in "filename"" ?
I find plenty of examples of how to do this using FDM but we have FMC managing our HA FTD's and version 6.6.1 doesn't upload certs to the FTD according to the admin guide.
ej
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide