SSL VPN router send only the own certificate not the whole chain

Unanswered Question
Feb 25th, 2008
User Badges:
  • Bronze, 100 points or more

I have configured a router to be a SSL VPN Gateway, and it works fine, then i decided to add an external, valide certificate to it.

I created the trustpoint, authenticated it, imported it's certificate and this procedure seems to be right. But the certificate I get is chained under 2 certificate autorities, then I created two more trustpoints and added each up lever certificate to one trust point. (this is the procedure in cisco documentation).

But when an user try to connect to SSL vpn the router does not send the whole chain certificate, only it's own, and the host who is connecting says the certificate is from an untrusted certificate autority.

Anyone knows how to solve that?

I already added the certificate in all orders, root first, root last... all.

This is the procedure i followed:


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)


This Discussion