cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
350
Views
0
Helpful
1
Replies

IOS CA server migration

amsasidh
Cisco Employee
Cisco Employee

Hi,

I would like to know  if I need to  replace/migrate my IOS CA server at some point,  in a GETVPN environment , will the GDOI group function with certificates from both new and old CA servers concurrently at that time. Any pointers is highly appreciated.

Thanks,

AS

1 Reply 1

Philip D'Ath
VIP Alumni
VIP Alumni

I don't know about GDOI.  I do have some knowledge about CA's.

As long as the devices have a trust chain they should be happy.  If you deploy a new certificate server, and you configure your devices to trust both CA's, then everything should be happy.