Is there a way to change the CSR for install SSL Certificate for CCMADMIN

Unanswered Question
Aug 26th, 2010
User Badges:

HI there,

Our customer want a solution for the https failure on CCMAdmin and CCMUser sites.

For that, I have exported a csr to buy a ssl certificate from verisign.

The problem is the csr includes fqdn an not just the servername

But the users just have to type in the servername to reach the server.

Is there a way to export a csr which include as common name only the server name without changing the domain settings in the cucm?



  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Aaron Harrison Thu, 08/26/2010 - 04:05
User Badges:
  • Super Bronze, 10000 points or more
  • Community Spotlight Award,

    Member's Choice, May 2015


You can go to the server via SSH, and enter the 'set web-security' command with the alternate-host-name parameter:

Command Syntax
set web-security orgunit orgname locality state country alternate-host-name
• orgunit represents the organizational unit.
• orgname represents the organizational name.
• locality represents the organization location.
• state represents the organization state.
• country represents the organization country.
• alternate-host-name (optional) specifies an alternate name for the host when you generate a
web-server (Tomcat) certificate.
Note When you set an alternate-host-name parameter with the set web-security command,
self-signed certificates for tomcat will contain the Subject Alternate Name extension with
the alternate-host-name specified. CSR for Cisco Unified Communications Manager will
contain Subject Alternate Name Extension with the alternate host name included in the CSR.

Typically you would still use an FQDN, but a less specific one (e.g.



Please rate helpful posts...


This Discussion