06-09-2021 01:55 PM - edited 07-05-2021 01:25 PM
can this be done? i have 2 controllers with expired certs and would like to save money buy purchasing only one certificate. the information i'm finding is conflicting.
our systems were originally built by contractors so i'm not sure how they did it. both controllers are using a wildcard cert which i assumed was the same cert used on each. there is also the discussion here that says you can do it https://community.cisco.com/t5/wireless/3rd-party-ssl-cert-and-two-wlc-s/m-p/2821084
however, according to the cisco documentation, when you do the CSR command from the CLI it generates a private key that stays on the local controller and as such the cisco documentation says the related signed cert cannot be used on any other controller
Solved! Go to Solution.
06-09-2021 10:07 PM
if you had generated CSR from WLCs then you cant use same SSL cert on both.
But if you generated from OpenSSL then you can use on both WLCs. More info: : https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html#anc8
Regards
Dont forget to rate helpful posts
06-09-2021 10:07 PM
if you had generated CSR from WLCs then you cant use same SSL cert on both.
But if you generated from OpenSSL then you can use on both WLCs. More info: : https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html#anc8
Regards
Dont forget to rate helpful posts
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide