I'm having trouble with certificates for my NAC environment. I have generated the CSR with the private key. I have then requested certificate from a Windows 2003 Server CA Authority. I'm not sure which item to use so I have tried with Administrator, Web Server and User. I download the certificate from the CA and try uploading to the CAM and always keep getting "Must include end entity". I'm not sure if I'm doing the whole process correctly seeing as there is not much information to using a Microsoft CA. Has any one done this and can give me a help.
You need the web server certificate for your CAM. Make sure you save the private key somewhere safe also. Once you get the cert from the MS CA, open the cert and the private key in notepad and combine them in one file. Upload that file to the CAM under the X509 tab under SSL. Now this would work under the assumption that you're working with the latest CCA. If it's something different, please post that.
Here is what I did. I went to CAM and generated a CSR and exported the CSR with the private key. Also I exported only the private key for safe keeping.
Then I went to the Microsoft CA web page and submitted my request as a Web Server. And download the certificate provided (certnew.cer) I opened this with notepad and the private key as well and copied and pasted the private key into the certnew.cer and saved it as a new file cert.txt. I then tried to import the cert-txt file via the X509 Certificate page. Still I get the message "Must include end entity certificate".
Somewhere along the line I'm missing a step, I just don't know what.
I am having trouble while importing SSL certificate that we have purchased from geo trust, However if we genrate self signed certificate it works perfectly fine for 3 month. Problm is every 3 month we have to regenrate the certificate. TO overcome this we have purchased SSL certificate. Any help suggetsion is appreciated.
I am attching the error snapshots for refrence " must include end entity certificate"
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...