Solved

PIX 506 Certificate install from am Windows server CA

Posted on 2006-07-05
9
437 Views
Last Modified: 2013-11-16
I want to install a certificate on a PIX 506e from our windows 2003 server CA.
In the Cisco manual it is written: "You have to contact the CA administrator to authenticate your PIX manually"

I don't know how to do that.

I am using PDM, and tried also command interface.

I need to use this certificate for VPN client setup.
0
Comment
Question by:Ehab Salem
  • 6
  • 3
9 Comments
 
LVL 9

Accepted Solution

by:
javajws earned 250 total points
ID: 17044957
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17049214
Thanks a lot, but I got stuck.

I downloaded the MSCEP add-on, installed it, and followed all the instructions given, and all went ok.
But after the certificate enrollment was successfull, I tried to logon to the PIX PDM to configure VPN I couldn't. It is always giving "Cannot find server".

I restored original conf and it worked back again. I restarted the procedure and I always get stuck at this point.

What could be wrong?
0
 
LVL 9

Expert Comment

by:javajws
ID: 17049764
I think you are doing everything correctly.  I think you need to use my solution above with this additional piece of information:
http://www.experts-exchange.com/Networking/Broadband/ISPs/Q_21898500.html
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 
LVL 14

Author Comment

by:Ehab Salem
ID: 17049785
I just wanted to make things more clear:
Before doing the enrollment I was able to use the PDM.
After enroll, PDM is not working
I restarted the PIX (conf changes lost), then PDM is working again.

I habe one question:

I read in another Cisco doc that I have to enter
ca save all

In the end.
I did not. Can this be the cause of the problem?
0
 
LVL 9

Expert Comment

by:javajws
ID: 17049895
It very well could be.  Give it a try.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17050030
ca save all did not solve the proble, neither did: aaa authentication http console LOCAL

I do not have a problem in username and password, the PIX PDM page is not opening at all.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17050104
Now even after restart I cannot use PDM.

PDM is now again working after I wrote:

ca zeroize rsa

But the enrollment is cancelled.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17257912
I am still facing the problem that everytime I restart the PIX I cannot access thru PDM http interface, till I zeroize rsa.

I really appreciate the help by javajws, and would like to complete the task.
0
 
LVL 14

Author Comment

by:Ehab Salem
ID: 17332618
I don't know what happened but it is working. Thanks
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

When you try to share a printer , you may receive one of the following error messages. Error message when you use the Add Printer Wizard to share a printer: Windows could not share your printer. Operation could not be completed (Error 0x000006…
For many of us, the  holiday season kindles the natural urge to give back to our friends, family members and communities. While it's easy for friends to notice the impact of such deeds, understanding the contributions of businesses and enterprises i…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

776 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question