cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
585
Views
0
Helpful
2
Replies

Key size for root CA with EAP-TLS

miwitte
Level 4
Level 4

Is there any kind of constraint on the root CA's cert size? The root CA has a Cert of 2048 and it is handing out User,machine and server certs of 1024. I am having issues getting the certs to SSL handshake and was wondering if there is a issue trying to read the root because it has a cert of 2048 .

2 Replies 2

wong34539
Level 6
Level 6

I dont think there is any limit on the root CA cert size. But does it work if you use a cert of size 1024?

willskei
Level 1
Level 1

You clients will hang or fail with any key size over 1024. I had this same issue .... Do you see the Handshake errors in the ACS logs ? If so you are having the same issue.

Reinstall the CA with 1024

Review Cisco Networking for a $25 gift card