cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
897
Views
0
Helpful
4
Replies

PKI Enrollment for GETVPN

John Pong
Level 1
Level 1

We need to enroll our GMs to our KS's via PKI. Is there a way for us to enroll all our router using the same certificate/CSR? Thanks!
 

4 Replies 4

narcis antonie
Level 1
Level 1

Hi

equipment (in your case router) it is meant for. I don't think there is a way for the CA to issue a certificate usable on multiple devices

Hope this will help,

Best of luck

Hi Narcis,

Thanks for your response. I was able to perform this however there are some drawbacks since you are using the same certificate signed by the CA, there will be no identity between the devices involved. Aside from that, there is an alarm being generated but is not traffic affecting.

 

Hy John,

Interesting to know, but what is the purpose of the certificate if it can't uniquely identify each router. Does it help you?

Good luck

For ease of deployment purposes without involving the CA server. But this setup wasn't deployed in our production environment.