Solved

PIX 506 Certificate install from am Windows server CA

Posted on 2006-07-05
9
427 Views
Last Modified: 2013-11-16
I want to install a certificate on a PIX 506e from our windows 2003 server CA.
In the Cisco manual it is written: "You have to contact the CA administrator to authenticate your PIX manually"

I don't know how to do that.

I am using PDM, and tried also command interface.

I need to use this certificate for VPN client setup.
0
Comment
Question by:Ehab Salem
  • 6
  • 3
9 Comments
 
LVL 9

Accepted Solution

by:
javajws earned 250 total points
ID: 17044957
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17049214
Thanks a lot, but I got stuck.

I downloaded the MSCEP add-on, installed it, and followed all the instructions given, and all went ok.
But after the certificate enrollment was successfull, I tried to logon to the PIX PDM to configure VPN I couldn't. It is always giving "Cannot find server".

I restored original conf and it worked back again. I restarted the procedure and I always get stuck at this point.

What could be wrong?
0
 
LVL 9

Expert Comment

by:javajws
ID: 17049764
I think you are doing everything correctly.  I think you need to use my solution above with this additional piece of information:
http://www.experts-exchange.com/Networking/Broadband/ISPs/Q_21898500.html
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17049785
I just wanted to make things more clear:
Before doing the enrollment I was able to use the PDM.
After enroll, PDM is not working
I restarted the PIX (conf changes lost), then PDM is working again.

I habe one question:

I read in another Cisco doc that I have to enter
ca save all

In the end.
I did not. Can this be the cause of the problem?
0
Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

 
LVL 9

Expert Comment

by:javajws
ID: 17049895
It very well could be.  Give it a try.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17050030
ca save all did not solve the proble, neither did: aaa authentication http console LOCAL

I do not have a problem in username and password, the PIX PDM page is not opening at all.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17050104
Now even after restart I cannot use PDM.

PDM is now again working after I wrote:

ca zeroize rsa

But the enrollment is cancelled.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17257912
I am still facing the problem that everytime I restart the PIX I cannot access thru PDM http interface, till I zeroize rsa.

I really appreciate the help by javajws, and would like to complete the task.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17332618
I don't know what happened but it is working. Thanks
0

Featured Post

What Is Threat Intelligence?

Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

Join & Write a Comment

Data center, now-a-days, is referred as the home of all the advanced technologies. In-fact, most of the businesses are now establishing their entire organizational structure around the IT capabilities.
Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now