cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1677
Views
0
Helpful
3
Replies

ASA Local CA OTP E-mail Enrollment with an IP Address

Michael Wollner
Level 1
Level 1

Hello,

I have configured the local CA Server on a ASA 8.2.2.

I want to use the rollout feature via Email OTP. When I received this email I always see this URL:

https://<ASA HOSTNAME>/+CSOCSA+/enroll.html

My questions:

1.     How can I change the Hostname to the IP address of the outside interface?

2.     Can i somehow edit the e-mail template directly on the ASA?

I do not want to use a DNS name in the URL.

Thanks in advance

3 Replies 3

jan.nielsen
Level 7
Level 7

Use a name, you will get certificate errors if you don't use the name of the asa and the cn in its cert is the same.

I don't use a trusted certificate, so I don't care about the errors with the certificate.

Hi Michael,

as far as I know it is not possible to customize the URL in the email sent by the local CA,  i.e. it will always use the ASA's FQDN.

You may want to discuss this with your CAM or SE, they can submit a feature request to make this customizable.

regards

Herbert