03-29-2023 03:18 PM
hello,
I have a cedge 1002-x does not show the Serial Number to upload the device to the smart account.
EDGE02#request platform software sdwan root-cert-chain install bootflash:root-ca.crt
Uploading root-ca-cert-chain via VPN 0
Copying ... /bootflash/root-ca.crt via VPN 0
Updating the root certificate chain..
Successfully installed the root certificate chain
EDGE02#show sdwan certificate serial
Certificate not yet installed ... giving up.
Chassis number: ASR-64ce3ef7-b757-4726-82b3-90849def7bbc serial number:
EDGE02#
EDGE02#dir bootflash: | i root-ca.crt
20 -rw- 45482 Mar 29 2023 09:07:35 -03:00 root-ca.crt
EDGE02#show crypto pki certificates
Router Self-Signed Certificate
Status: Available
Certificate Serial Number (hex): 01
Certificate Usage: General Purpose
Issuer:
cn=IOS-Self-Signed-Certificate-1744675666
Subject:
Name: IOS-Self-Signed-Certificate-1744675666
cn=IOS-Self-Signed-Certificate-1744675666
Validity Date:
start date: 08:39:25 CLST Mar 29 2023
end date: 20:00:00 CLST Dec 31 2029
Associated Trustpoints: TP-self-signed-1744675666
EDGE02#
Solved! Go to Solution.
03-29-2023 10:15 PM - edited 03-29-2023 10:15 PM
vEdge cloud routers, ISRv routers, CSR1000v routers, and Cisco ASR 1002-X routers do not have device certificates pre-installed. Each device uses a One Time Password (OTP)/Token that is generated by vManage and configured during device deployment for the purpose of a temporary identity. Once the device is temporarily authenticated, a permanent identity is provided by vManage, which can operate as a Certificate Authority (CA) to generate and install certificates for these devices.
https://www.cisco.com/c/en/us/td/docs/solutions/CVD/SDWAN/cisco-sdwan-design-guide.html#Certificates
03-29-2023 10:15 PM - edited 03-29-2023 10:15 PM
vEdge cloud routers, ISRv routers, CSR1000v routers, and Cisco ASR 1002-X routers do not have device certificates pre-installed. Each device uses a One Time Password (OTP)/Token that is generated by vManage and configured during device deployment for the purpose of a temporary identity. Once the device is temporarily authenticated, a permanent identity is provided by vManage, which can operate as a Certificate Authority (CA) to generate and install certificates for these devices.
https://www.cisco.com/c/en/us/td/docs/solutions/CVD/SDWAN/cisco-sdwan-design-guide.html#Certificates
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide