cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2929
Views
0
Helpful
2
Replies

To generate CSR from ASA 5520 8.2(5)

Shibu1978
Level 1
Level 1

Dears,

We are already having a True business ID certificate from Geotrust for our SSL VPN on CISCO ASA 5510.this is working fine.

We are now changing our device from ASA 5510 to ASA5520 in failover setup. As we check with Geotrust they are asking us to create a new CSR with same parameters from new ASA5520 device and reissue the certificate from their site.

In this context how to create a new CSR from ASA5520 8.2(5). Could someone help to create CSR from ASA 5520 8.2(5)

Thanks

2 Replies 2

Marcin Latosiewicz
Cisco Employee
Cisco Employee

First of all if you have exportable keys you can export PKCS12 and import it on the new unit.

That being said a CSR if generated when you have "enrollment terminal" method specified and issue "crypto ca enroll TRUSTPOINT_NAME".

Have a look here for an example:

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808b3cff.shtml

M.

The below URL guide to install 3rd party certificate on the ASA.

http://www.cisco.com/en/US/products/ps6120/products_configuration_example09186a00808b3cff.shtml