12-29-2021 06:00 PM
Hi, I am have a HA SSO scenario for two controller version 8.3.150, i Generate a CSR using the WLC itself to generate the CSR (Available after 8.3.102), according to WLC HA SSO deployment guide and due to certificates are not replicated from primary to secondary controller in a HA SSO scenario, can install two certificates single for each controller?.
Does this practice generate some kind of problem?
Thank.
12-29-2021 09:37 PM
Normally it will not create any issue.
As per my experience I would recommend to generate CSR with OpenSSL and then signed it with your Enterprise CA or Thirdd party CA.
Regards
Don't forget to arte helpful posts
01-06-2022 07:50 AM
Like Sandeep said, I'll always use OpenSSL to generate CSR. I'd a bad experience using Controller to create CSR and it didn't worked at all.
Once you get the CSR signed with your CA and get the required cert, the process is simple.
Install the cert on your primary -- redundancy force-switchover -- install the cert on your new primary (original HA) -- redundancy force-switchover.
Make sure the WLCs in Sync before issues switchover command.
CJ
/**Please rate all useful responses**/
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide