Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Host mismatch

Hi All,

When I try to access my Pix 506e via PDM (browser), I am running into a few problems. I am prompted to accept the certificate and log in, and then I receive a message that the certificates don't match. If I continue and accept the message, I receive an error indicating I have a host mismatch error. If I continue, I am prompted to enter the usercode and password a second time, and nothing I enter is accepted.

We did change the hostname on the pix, so I need to know how I fix this issue with the certificates. Any ideas? I have attached a screen snapshot of what I am receiving.

Thanks...

5 REPLIES
New Member

Re: Host mismatch

Hello

When you change the pix name or domain-name you will have to regenerate the public key .

You can do it via telnet (if preconfigured) or you will have to access your pix via serial console.

Once you log in type user / pass / enable pass

conf t

hostname type_hostname

domain-name type_domain_name

wr mem

ca zeroize rsa

ca generate rsa key 1024

ca save all

The "wr mem" command will save host and domain name.

The "ca save all" will save the key

Hope this helps ... rate if it does.

New Member

Re: Host mismatch

I made the changes you listed, but still no luck. I still receive the hostname mismatch error.

For some reason, PDM thinks the server certificate has a different hostname than the server. I regenerated the public key, but I still have the issue.

New Member

Re: Host mismatch

Hello :

Can you post your configuration ?

Have you defined a username and password ?

have you enabled http/pdm with commands :

pdm location inside_ip interface

and

http server enable

http inside_ip inside_ip_mask interface

Hope this helps ...

New Member

Re: Host mismatch

Figured it out. The problem was the version of Java I was running. I downgraded to 1.4.2_07 from _08 and it now works.

New Member

Re: Host mismatch

Hello !

Excelent , thank you for posting the solution.

Have a great day !

189
Views
0
Helpful
5
Replies