Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
Community Member

IDS alarm feed inactive

I am in the middle of a migration to ASA from Pix. I have an old IDS 4215 active the Pix side that now shows feed inactive from sensor. Alarm context is >> certificate expired for cisco secure ids event subscriber java.security.cert.certificateexpiredexception notafter Wed Sept 09 2009. Is there a workaround for this? I need to maintain this IDS until the IPS is online. Can I tell java to ignore this?

1 REPLY
Cisco Employee

Re: IDS alarm feed inactive

The TLS certificate on the sensor has expired. You just need to generate a new certificate on the sensor.

Use the "tls generate-key" command on the sensor to generate a new certificate:

http://www.cisco.com/en/US/docs/security/ips/6.0/command/reference/crCmds.html#wp504369

You will then just have to update your management station to use the new sensor certificate.

If you need help with that just let me know what management software you are using and what version.

163
Views
0
Helpful
1
Replies
CreatePlease to create content