cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
162
Views
0
Helpful
1
Replies

FMC certificates

Hi I have been given a task to Install PKI Root / Issuing CA Cert Objects onto a new HA FMCv deployment. I have setup HA and preconfigured everything. 

I have been provided three certs one root and two .pfx files from the customer. 

labelled 

root.p7b

fmc1.pfx

fmc2.pfx


How does this get setup with FMC? 
I know with ISE you install the root into the trustees cert store then generate a cert, get it signed and  bind it, but cannot see a trust cert area within FMC..

 

 

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

While FMC can use (trusted) root CA certificates (via Objects > Object Management > PKI > Trusted CAs), that is not required to be able to use a certificate for the FMC itself. For that purpose, you need only install the FMC server certificate under System > Configuration > HTTPS Certificate. You also have the option to import the chain from the issuing / root CA in that dialog box.

https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/admin/720/management-center-admin-72/system-config.html#id_73638

Review Cisco Networking for a $25 gift card