cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
377
Views
0
Helpful
1
Replies

WLC AP authentication for expired built-in certs

gpinero
Beginner
Beginner

Hi all, I'm facing a problem with old ap's. The builtin certificate was expired and it's doesn't register. Temporal workaround was change date of the WLC. Now I like to resolve this issue with best practices. 

 

Can I use ISE to auth the access points?

I'm reading about LSC and disable the use of certificates, only auth the AP with MAC address? Is this options secure? what are the problems with LSC?

I have an enterprise CA... I can use it? what is the best form of do that

 

Can you guide me to the best maner to do the AP authentication to the controller?

 

Thanks

CCNP R&S, CCNP Security, CCNA CyberOps
1 Reply 1

marce1000
VIP Mentor VIP Mentor
VIP Mentor

- Try :

   

(WLC)>config ap cert-expiry-ignore {mic|ssc} enable

M. 



-- ' A nun once asked a penguin ' do you think the earth is flat ? ; the penguin replied :
Madam, it all depends , in Riemann geometries the earth can be perfectly flat! The nun thanked him , he tripped and fell forward : the poor animal had forgotten that he might be living in a Riemann geometry too!
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers