cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
730
Views
0
Helpful
1
Replies

IDS alarm feed inactive

shawn.reinhard
Level 1
Level 1

I am in the middle of a migration to ASA from Pix. I have an old IDS 4215 active the Pix side that now shows feed inactive from sensor. Alarm context is >> certificate expired for cisco secure ids event subscriber java.security.cert.certificateexpiredexception notafter Wed Sept 09 2009. Is there a workaround for this? I need to maintain this IDS until the IPS is online. Can I tell java to ignore this?

1 Reply 1

marcabal
Cisco Employee
Cisco Employee

The TLS certificate on the sensor has expired. You just need to generate a new certificate on the sensor.

Use the "tls generate-key" command on the sensor to generate a new certificate:

http://www.cisco.com/en/US/docs/security/ips/6.0/command/reference/crCmds.html#wp504369

You will then just have to update your management station to use the new sensor certificate.

If you need help with that just let me know what management software you are using and what version.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card