12-12-2022 10:57 PM
Hello Guys,
we are having one Access point of model 3702 where certificate has expired.
*Dec 12 13:47:41.535: %PKI-3-CERTIFICATE_INVALID_EXPIRED: Certificate chain validation has failed. The certificate (SN: 4E78A210000000000007) has expired. Validity period ended on 21:43:46 UTC Dec 4 2022
*Dec 12 13:47:41.535: Image signing certificate validation failed (1A).
Any chance to renew certificates from AP end?
12-12-2022 11:01 PM
CSCwd80290
12-13-2022 12:57 PM
Roll the clock back to before december 4 2022 and the AP can download the new image then can set the clock back to normal.
07-05-2023 07:46 AM
I had this same issue. I rolled the clock back, and that didn't work either. The solution I found was to put the exact image the access point was trying to download from the WLC onto the access point using TFTP. It came online after it booted up, and it passed the %PKI-3-CERTIFICATE_INVALID_EXPIRED.
01-26-2024 11:28 AM
How do you know what image the AP wanted?
10-31-2023 01:20 PM
You need disable NTP in the WLC and set the a time to before Dec/2022.
Case after it the AP still get the same mensage "%PKI-3-CERTIFICATE_INVALID_EXPIRED", you should set the clock in the AP over console: clock set 19:00:00 Oct 30 2020
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide