cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1595
Views
5
Helpful
10
Replies

Cisco WLC Web Admin Certificate Error

studmuffin
Level 1
Level 1

I keep getting a https error NET::ERR_CERT_COMMON_NAME_INVALID

while trying to use externally generated certificate 

 

Windows server 2019 Default webserver Template 

 

Did I do something wrong?

Error is on all browsers

10 Replies 10

balaji.bandi
Hall of Fame
Hall of Fame

check the cert installed correctly and are you using IP address or dns name ?

 

https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

I use dns and i dont know exactly how to trouble shoot this?

accept the risk and check the certificate validity.

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

It says the certificate is invalid

follow the above guide get a cert and install

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Is the common name just the host name and is it case sensative becuase in windows server dns i get to the controller by going to https://studmuffinwireless.studmuffin.com but the host name is StudmuffinWireless on the controller and the certificate is made out for StudmuffinWireless

I think i have an idea on  what is wrong 

I use very modern browsers like you should edge chrome and opera gx do you think that might have something to do with it?

ok then try Firefox able to give access or IE is good for most WLC configuration ( chrome has some issue)

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Is this certificate actually valid?

Is the hostname (CN) in the certificate the same as shown in the browser URL field? 

Did you include "Subject Alternative Names" which contains again the same name as the CN? (required for Google based browsers, like Chrome and the new Edge)

Does the PC trust the full certificate chain?

My pc fully trust the certificate chain and i checked to makesure the hostname is correct the only thing i dont get how to do i s the san's part

I don't really know open ssl enough to get that to work

Review Cisco Networking for a $25 gift card