cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1086
Views
5
Helpful
1
Replies

same ssl cert on multiple controllers

bgoulet00
Level 1
Level 1

can this be done?  i have 2 controllers with expired certs and would like to save money buy purchasing only one certificate.  the information i'm finding is conflicting.  

 

our systems were originally built by contractors so i'm not sure how they did it.  both controllers are using a wildcard cert which i assumed was the same cert used on each.  there is also the discussion here that says you can do it https://community.cisco.com/t5/wireless/3rd-party-ssl-cert-and-two-wlc-s/m-p/2821084

 

however, according to the cisco documentation, when you do the CSR command from the CLI it generates a private key that stays on the local controller and as such the cisco documentation says the related signed cert cannot be used on any other controller

https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html

 

1 Accepted Solution

Accepted Solutions

Sandeep Choudhary
VIP Alumni
VIP Alumni

if you had generated CSR from WLCs then you cant use same SSL cert on both.

 

But if you generated from OpenSSL then you can use on both WLCs. More info: : https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html#anc8

 

Regards

Dont forget to rate helpful posts

View solution in original post

1 Reply 1

Sandeep Choudhary
VIP Alumni
VIP Alumni

if you had generated CSR from WLCs then you cant use same SSL cert on both.

 

But if you generated from OpenSSL then you can use on both WLCs. More info: : https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/109597-csr-chained-certificates-wlc-00.html#anc8

 

Regards

Dont forget to rate helpful posts

Review Cisco Networking for a $25 gift card