cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
393
Views
0
Helpful
1
Replies

SSL VPN router send only the own certificate not the whole chain

guibarati
Level 4
Level 4

I have configured a router to be a SSL VPN Gateway, and it works fine, then i decided to add an external, valide certificate to it.

I created the trustpoint, authenticated it, imported it's certificate and this procedure seems to be right. But the certificate I get is chained under 2 certificate autorities, then I created two more trustpoints and added each up lever certificate to one trust point. (this is the procedure in cisco documentation).

But when an user try to connect to SSL vpn the router does not send the whole chain certificate, only it's own, and the host who is connecting says the certificate is from an untrusted certificate autority.

Anyone knows how to solve that?

I already added the certificate in all orders, root first, root last... all.

This is the procedure i followed:

http://www.cisco.com/en/US/partner/products/hw/switches/ps708/products_configuration_guide_chapter09186a008048e659.html

Thanks.

1 Reply 1

guibarati
Level 4
Level 4

Ended up finding out it's a bug, still opened at bug id:CSCsj86036