Hello for everybpdy.
We are going to change old ssl certificate on firepower 1140 by new ssl certificate. If i understood correclty, for this action i need delete current certificate from current anyconnect connection
Delete it from pki certificate
After that, i need to add a new ssl certificate with the same name and link it to the appropriate interface in the anyconnect profile.
Is this procedure correct, or ssl certificate need to be changed other way?
Solved! Go to Solution.
You don't need to delete the old certificate first. You can create the new trustpoint, authenticate and enrol. You would then just then select the new identity certificate from the drop-down list and deploy the policy. Once you've confirmed the new certificate is working you can then remove the old trustpoint.