cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
564
Views
0
Helpful
1
Replies

How to renew VPN certification for ASA.

JBrav0
Level 1
Level 1

Hello all, Ive been covering for the person that took care of this kind of stuff so I have zero ideas where to begin. 

The issue is that our certificate for the cicso anyconnect VPN expired. So obviously now we are trying to renew it and the issue is I have no idea how to do that. 

I found the location where certificates are in the ASA CFM GUI. All my boss knows is that if I can locate the cert request to generate some sort of request so I can give them the file it generates and use that to create a new cert. Although I don't know how or where to go about that. Even if I got it, would it be as simple as deleting the old one and uploading the new one?

 

Thanks for the help in advance. 

1 Reply 1

Hi @JBrav0 

Refer to this guide to renew a certificate on the ASA.

https://www.cisco.com/c/en/us/support/docs/security-vpn/public-key-infrastructure-pki/200339-Configure-ASA-SSL-Digital-Certificate-I.html#anc20

 

This gives you the option to renew using ASDM or the CLI, which would be just using the command

crypto ca enroll <trustpoint name>

then copy the CSR and send to the CA to sign, then import.