09-30-2013 12:50 AM - edited 03-07-2019 03:44 PM
Dears
please tell me what is this when i write ( show run ) in the switch
!
crypto pki certificate chain TP-self-signed-4128971520
certificate self-signed 01
3082024F 308201B8 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 34313238 39373135 3230301E 170D3933 30333031 30303031
32355A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D34 31323839
37313532 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100C17E C2AD65AE 4AA127DA 64F64089 42A01D09 D4CFE67F 1C7C480E 79C9280C
DEE33BF4 FB3C8BAF 69C179BB 15A801B2 F8CF6E77 6CD0B124 271B10BA B3D6F4BC
FD8A4DD5 DA98EB50 C9B4C3B4 0531A6BB 0AC8D922 AF3607E3 1B248BDB 57B4961A
A311D5F1 2C4D748B BF968409 05EA9893 4B07E584 743BB74B 78ACED71 6B0CD7C7
81010203 010001A3 77307530 0F060355 1D130101 FF040530 030101FF 30220603
551D1104 1B301982 17546973 686B6E65 742D426F 72646572 2D537769 7463682E
301F0603 551D2304 18301680 141560E2 51C5EE3D 5FE5FA51 0E121179 B2FC8B96
DF301D06 03551D0E 04160414 1560E251 C5EE3D5F E5FA510E 121179B2 FC8B96DF
300D0609 2A864886 F70D0101 04050003 818100AC C98B3874 0BC02922 4EDE0318
0B5A5817 44AB660F 83DE1252 47577E96 08E6CC40 587CB40B C0FFC52D AD01B496
74F9C89B 53AEBA58 C824B595 2C38E4C7 5BE7A2FF D1D2E894 E1721EC0 0A2FEBAB
FAC77B19 89ABBAA1 6C94D0BB D46C2CEA AAB90447 37E58AB5 11DBCE94 0A55C86E
857B4E5B 5DB602BA EDF7A491 50A21281 E05ECF
quit
09-30-2013 12:57 AM
Hi
Is the certificate used for both ssh and https connections to the switch.
HTH
Regards
Carlo
Sent from Cisco Technical Support iPhone App
09-30-2013 12:59 AM
but i didnt configure SSH on that switch , !!! why appeared that ?
09-30-2013 01:04 AM
Hi.
Which ios version have you installed on the swtich?
Let me know
Carlo
Please rate all helpful posts
"The more you help the more you learn"
09-30-2013 01:04 AM
Hi Rawa,
This is a self signed certificate (not signed by any external certification authority) used for encryption. It is generated for example if you have ip http secure-server in your config or you are using SSL VPN.
Best regards,
Jan
09-30-2013 01:17 AM
Hi Rawa,
this certificate generated by as a result fo configuring http/https_secure-server. inthemeantime this can be generate after configuring ssh on your switch.
regards,
09-30-2013 01:38 AM
Dears
that my Switch , i used in the Border network ( connected to the ISP )
Cisco IOS Software, C3750E Software (C3750E-UNIVERSALK9-M), Version 12.2(55)SE5, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2012 by Cisco Systems, Inc.
Compiled Thu 09-Feb-12 18:14 by prod_rel_team
Image text-base: 0x00003000, data-base: 0x02800000
System image file is "flash:/c3750e-universalk9-mz.122-55.SE5/c3750e-universalk9-mz.122-55.SE5.bin"
Switch Ports Model SW Version SW Image
------ ----- ----- ---------- ----------
* 1 30 WS-C3750X-24 12.2(55)SE5 C3750E-UNIVERSALK9-M
is it need to change the image ?
09-30-2013 01:47 AM
Hi Rawa.
If you are confident that you don't need that certificate, you can remove it from the config by issuing commands like:
no crypto pki trustpoint TP-self-signed-4128971520
And the certificate will disappear.
But remember that if you will activate HTTPS-SERVER or SSH in the future, the certificate will be generated again... also because you need it for those protocols.
HTH
Regards
Carlo
Please rate all helpful posts
"The more you help the more you learn"
09-30-2013 01:52 AM
Thank You Carlo
yas i will configure SSH on it , but i dont understand what do you mean ( its certification used for SSH and HTTPS ) ,
09-30-2013 02:04 AM
Hi Rawa,
this certificate provide an encrypted connection when you eniciate a connectiion thourgh using https or ssh.
you will accept the certificate when you initiate a connection to the switch through http / https.
regards,
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide