cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
757
Views
0
Helpful
1
Replies

the vedge 1002-x does not show the Serial Number to upload the device

PaulReveco
Level 1
Level 1

hello,

I have a cedge 1002-x does not show the Serial Number to upload the device to the smart account.

EDGE02#request platform software sdwan root-cert-chain install bootflash:root-ca.crt
Uploading root-ca-cert-chain via VPN 0
Copying ... /bootflash/root-ca.crt via VPN 0
Updating the root certificate chain..
Successfully installed the root certificate chain

EDGE02#show sdwan certificate serial
Certificate not yet installed ... giving up.
Chassis number: ASR-64ce3ef7-b757-4726-82b3-90849def7bbc serial number:

EDGE02#

EDGE02#dir bootflash: | i root-ca.crt
20 -rw- 45482 Mar 29 2023 09:07:35 -03:00 root-ca.crt

EDGE02#show crypto pki certificates
Router Self-Signed Certificate
Status: Available
Certificate Serial Number (hex): 01
Certificate Usage: General Purpose
Issuer:
cn=IOS-Self-Signed-Certificate-1744675666
Subject:
Name: IOS-Self-Signed-Certificate-1744675666
cn=IOS-Self-Signed-Certificate-1744675666
Validity Date:
start date: 08:39:25 CLST Mar 29 2023
end date: 20:00:00 CLST Dec 31 2029
Associated Trustpoints: TP-self-signed-1744675666

EDGE02#

 

1 Accepted Solution

Accepted Solutions

dijix1990
VIP
VIP

vEdge cloud routers, ISRv routers, CSR1000v routers, and Cisco ASR 1002-X routers do not have device certificates pre-installed. Each device uses a One Time Password (OTP)/Token that is generated by vManage and configured during device deployment for the purpose of a temporary identity. Once the device is temporarily authenticated, a permanent identity is provided by vManage, which can operate as a Certificate Authority (CA) to generate and install certificates for these devices.

https://www.cisco.com/c/en/us/td/docs/solutions/CVD/SDWAN/cisco-sdwan-design-guide.html#Certificates

View solution in original post

1 Reply 1

dijix1990
VIP
VIP

vEdge cloud routers, ISRv routers, CSR1000v routers, and Cisco ASR 1002-X routers do not have device certificates pre-installed. Each device uses a One Time Password (OTP)/Token that is generated by vManage and configured during device deployment for the purpose of a temporary identity. Once the device is temporarily authenticated, a permanent identity is provided by vManage, which can operate as a Certificate Authority (CA) to generate and install certificates for these devices.

https://www.cisco.com/c/en/us/td/docs/solutions/CVD/SDWAN/cisco-sdwan-design-guide.html#Certificates

Review Cisco Networking for a $25 gift card