Solved

PIX 506 Certificate install from am Windows server CA

Posted on 2006-07-05
9
431 Views
Last Modified: 2013-11-16
I want to install a certificate on a PIX 506e from our windows 2003 server CA.
In the Cisco manual it is written: "You have to contact the CA administrator to authenticate your PIX manually"

I don't know how to do that.

I am using PDM, and tried also command interface.

I need to use this certificate for VPN client setup.
0
Comment
Question by:Ehab Salem
  • 6
  • 3
9 Comments
 
LVL 9

Accepted Solution

by:
javajws earned 250 total points
ID: 17044957
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17049214
Thanks a lot, but I got stuck.

I downloaded the MSCEP add-on, installed it, and followed all the instructions given, and all went ok.
But after the certificate enrollment was successfull, I tried to logon to the PIX PDM to configure VPN I couldn't. It is always giving "Cannot find server".

I restored original conf and it worked back again. I restarted the procedure and I always get stuck at this point.

What could be wrong?
0
 
LVL 9

Expert Comment

by:javajws
ID: 17049764
I think you are doing everything correctly.  I think you need to use my solution above with this additional piece of information:
http://www.experts-exchange.com/Networking/Broadband/ISPs/Q_21898500.html
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17049785
I just wanted to make things more clear:
Before doing the enrollment I was able to use the PDM.
After enroll, PDM is not working
I restarted the PIX (conf changes lost), then PDM is working again.

I habe one question:

I read in another Cisco doc that I have to enter
ca save all

In the end.
I did not. Can this be the cause of the problem?
0
New! My Passport Wireless Pro Wi-Fi Mobile Storage

Portable wireless storage to offload, edit, and stream anywhere.

High-capacity, wireless mobile storage designed to accompany professional photographers and videographers in the field to easily offload, edit and stream captured photos and high-definition videos.

 
LVL 9

Expert Comment

by:javajws
ID: 17049895
It very well could be.  Give it a try.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17050030
ca save all did not solve the proble, neither did: aaa authentication http console LOCAL

I do not have a problem in username and password, the PIX PDM page is not opening at all.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17050104
Now even after restart I cannot use PDM.

PDM is now again working after I wrote:

ca zeroize rsa

But the enrollment is cancelled.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17257912
I am still facing the problem that everytime I restart the PIX I cannot access thru PDM http interface, till I zeroize rsa.

I really appreciate the help by javajws, and would like to complete the task.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17332618
I don't know what happened but it is working. Thanks
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
PRTG Network Monitor lets you monitor your bandwidth usage, so you know who is using up your bandwidth, and what they're using it for.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

867 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

24 Experts available now in Live!

Get 1:1 Help Now