08-02-2006 07:23 AM - edited 03-09-2019 03:47 PM
Hi,
When I do a no shut after configuring the ios pki server it generates non-exportable RSA keys. I had previously exported the keys and want to import them. Does anyone know how to stop the pki server doing an auto generate of a new key-pair. Or how I mark them as exportable when the pki server generates them?
Thanks
08-08-2006 08:18 AM
I hope the following link will guide you
http://www.cisco.com/en/US/products/ps6350/products_configuration_guide_chapter09186a00804450cd.html
08-09-2006 12:04 AM
Thanks for that. I have discovered that the auto archive feature creates a pem file that can used as a restore file.
I nnow have problems with DMVPN spokes only talking to one head end router if certificates are used.
pre-shared keys work fine and EIGRP finds two neighbours. But if I change to Certs only one EIGRP neigbour is found.
Probably a config error but IOS can be very frustrating at times. ;-)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide