Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,We are hitting a bug in 12.5(1) SU3 that makes bulk export kinda useless (CSCvv67192). Bulk Export > 400 devices just fails and gets stuck (you need to restart the Bulk Provisioning Service to make it work again).It should be resolved in SU4.My 2 ...
Hi,I am in the process of creating new certs for our CUCM Cluster which are expiring in a month.In preparation : I wanted to upload the new Root CA ad new Sub CA in advance.Important remark (I think): the old and new CA's have the same Subject Field....
Hi, I am in the process of creating a new Multi-Server (SAN) certificate for our Collaboration Cluster.This automatically includes my Publisher, 2 Subscribers as well as my 2 Presence Nodes.My question is, as I need to renew my 2 * Unity Connection a...
Hi, I need to renew the SAN Certificate of our CallManager/Presence Cluster.In the past we generated a CSR the normal way containing all the cluster members as well parent domain and common name. This works... BUT... our servers in the cluster are st...
Update:It seems that this issue with the Root CA was not only limited to CUCM but also on Presence and Unity Connection.I opened a case with Cisco for this but no real answer came from them. So I just tried some ideas on my least important system : U...
Well, for starters :If I had done it like you proposed, I would be looking at this CA upload issue during the upgrde time window itself. At least annoying, having no acces to Cisco TAC myself directly, I like to prepare/test ast much as possible in a...
For the Root CA and Intermediate CA the Serials and Thumbprints are different, BUT the Subject Key Identifier for the old and new one are the same and the Previous CA Certificate Hash of the new (Root/Intermediate) CA contains the thumbprint of the o...
I mean Root and Intermediate CA (Sub CA). These new Certificates have other Serials and other expiration dates. So I consider them new. They have the same common name (Subject Field).
Nevermind, I found the response already in the community forum.https://community.cisco.com/t5/unified-communications/question-about-cisco-uc-multi-server-certificates/td-p/4021239 In short, it is not possible as your must create a new CSR for each Ap...