cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
509
Views
0
Helpful
8
Replies

Self signed certificates

rajeshk200_2
Level 1
Level 1

Dudes,

Is it possible to use self signed certificates for IPSec VPN?, I do not want to use preshared keys and third party CA for authentication.

If yes how do we do that.

Many thanks,

Rajesh

8 Replies 8

andrew.prince
Level 10
Level 10

I have seen that, It involves third party CA servers, I do not want to inlvolve CA's like Microsoft, Verisign, etc,

Thanks,

Rajesh

Wel - you need to generate the CSR, then you need a cert auth to validate the CSR. You cannot do this without a CA - the other options are in Unix/Linux - they can also sign/generate CSR's.

The Cisco ASA will not generate and sign certs for people/devices other than itself.

HTH>

Andrew,

My requirement is to establish VPN tunnel between two Cisco routers with self signed certicates, i.e wanted to replace pre-shared keys with the certificates signed by router itself.

Is that possible on cisco routers?

Thanks,

Rajesh

it looks matching my requirement, let me try this config, keep you posted the outcome.

Thamks,

Rajesh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: