cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1134
Views
0
Helpful
1
Replies

Viptela | Web server certificate?

Lost & Found
Level 2
Level 2

Hi, I would like to confirm the following regarding viptela web server. Supposed that the purpose of this certificate is to establish a secure connection between your web browser and the vManage server using authentication certificates.

Q:

  1. What will happen if the certificate expires? Can you still access the vManage web?

  2. By default, Does the web server certificate already installed / provided by Cisco?

  3. Can we generate a local certificate like openssl?

For example, if the current certificate issuer OU is vmanage does it mean that this is locally generated by vmanage?

 

Thanks

1 Reply 1

Hi,

 

As my knowledge,

  1. What will happen if the certificate expires? Can you still access the vManage web?>>> Yes you still access Vmanage. There is warning when certificate expires. 

  2. By default, Does the web server certificate already installed / provided by Cisco?>>> There is web certificate when install Vmanage, not sure provided by Cisco or other vendors... 

  3. Can we generate a local certificate like openssl?>>> yes, You can login VManage, in Administration >>> Settings >>> Web server Certificate >>> Create CSR and sign it to root CA >>> and import file signed.RootCA can be Vmanage with openssl command:openssl x509 -req -in webcert.csr -CA ROOTCA.pem -CAkey ROOTCA.key -CAcreateserial -out webcert.crt -days 3650 -sha256