cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1025
Views
0
Helpful
1
Replies

How to upgrade certificate of Management appliance from SHA1 to SHA2

pbabu6001
Level 1
Level 1

We are using M1070 in our email infrastructure and would like to upgrade the certificate from SHA1 to SHA2. Could you please suggest on how can I proceed further?

1 Reply 1

Libin Varghese
Cisco Employee
Cisco Employee

Hi,

To use a SHA-2 cert you would basically request a new certificate from the CA and request SHA-2. You could also create a signing request for a SHA-2 certificate on an external server and get it signed by the CA.

To install certificates on the SMA you would use the command "certconfig".
https://www.cisco.com/c/en/us/support/docs/security/content-security-management-appliance/118460-technote-sma-00.html

Signing requests for SHA-256 and other stronger certificates cannot be currently created on the ESA and is being tracked under the below feature request.

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCus19887/?reffering_site=dumpcr

Regards,
Libin Varghese