Certificate number

Hello

We strive to import a certificate that has been exported from an IIS server.

The certificate is a certificate wildcard (.pfx) that works as I managed to install on another server IIS and an ASA.

I'm fighting to get into one of our ASA 5510 and whenever I have try to install, it comes comes back with an error "import pkcs12" doesn't not who does give me much clue as to what is the error.

The trustpoints increase every time and if I look the trustpoints I see that each file starts with the following:

WARNING: Temporary self-signed certificate is generated for the export from a certificate key pair associated ID is not available.

First of all, I would like to delete all these trustpoints that they are now up as trustpoint 20 (started trustpoint 6) and then I would try and find out why it will not import the certificate on 2 of our 5510's?

Anyone any idea?

Thank you

Louis

If you import a certificate issued to a different server, you must have the certificate and the server private key in PEM format.

This article is quite old but still relevant step by step.

Tags: Cisco Security

Similar Questions

  • Can't find my certificate number and don't know how to make a backup for my new computer.

    need help to find my Pro 3.0 Wwindows XP on my PC certificate number, don't know where is my drive.  Also need measures to make a backup copy of my windows Xp to load into my new computer purchased.

    Visit the website of your computer manufacturer new medium for the information you are looking for. Carey Frisch

  • PKI / CAC certificate number

    The CAC authentication has been enabled, and Firefox see certificates. When you go to a site that requires this identification, the box appears and a certificate can be selected. The setting for "security.remember_cert_checkbox_default_setting:" has been set to 'false' because different sites require different certificates (there are 2-3 on the map.)

    The problem comes if a user activates the box to "Remember this decision" regardless of if the appropriate certificate has been chosen. Once the box is checked on a website whose identity, the browser stores that somewhere (it's a question I need to answer), but that does not negate the need to choose a certificate that the user might think. Instead, it will open the window of selection and will be the cert memory on top. That would be not bad, except the browser then opens the selection box several times. That I now work used to ask me to choose a cert once, now I have to choose a SEVEN TIMES before the site load. In addition, the site in question is updated periodically and the user must select the certificate several times again. Since we use Firefox because of the slow performance of the site in Internet Explorer, this question denies the advantage gained.

    So my question is how to remove the decision to recall by the browser?

    We tried things:

    • Hide deleted SSL.
    • Delete personal certificates and restart the browser.
    • Reload certification authorities.
    • Restore default browser and then reload the card readers.
    • Reinstall Firefox
    • (Remove C:\Users\(affected user) \AppData\Local\Mozilla\Firefox < and > C:\Users\(affected user) \AppData\Roaming\Mozilla\Firefox

    Any thoughts? This file stores these decisions?

    You can check if you can find a related security pref on the topic: config page.

    You can try to rename the file cert8.db in the Firefox profile in cert8.db.old folder or delete the cert8.db file to remove the intermediate certificates that Firefox has stored.

    If it helped to solve the problem, then you can delete the renamed file cert8.db.old.
    Otherwise you can rename (or copy) the file cert8.db.old to cert8.db to restore previous intermediary certificates.
    Firefox automatically records the intermediate certificates when you visit Web sites that send such a certificate.

    If that didn't help then remove or rename secmod.db (secmod.db.old) as well.

  • Smart card certificate number

    Hello

    We use Gemalto ID smart cards first .net to open a session in our office systems and use the same to work from home, connecting via Citrix Online site.

    Lenovo laptop at home is able to install the card reader and the smart card. A copy of the certificate of the smart card is copied to the Windows 8.1 point certmgr. However, when you access our website, IE does not read the certificate.

    Our website accepts the connection via IE, Chrome and Firefox. All 3 browsers are unable to read the certificate and there is no prompt to choose the certificate also.

    This has been noted on all laptops Lenovo only. No problem when using other brands with the same operating system.

    Details of the laptop

    Model tested: Lenovo Z50-70

    OS: windows 8.1

    Used browsers: IE 11, Chrome and Firefox (latest versions)

    Smart Card: Gemalto IDEPrime .net card

    Only issue with different models of Lenovo laptops. Other brands with the same operating system and browsers works fine.

    Let me know if you need more details

    Thank you

    RAM.

    I reset my computer to factory settings and found the culprit.

    -DISCOVERY OF VISUAL SUPERFISH INC.

    Remove this program and your browser must Access your certificates with no problems.

    -Bryan

  • Where to find the number of the certificate of registration of Toshiba?

    Hello

    I am new to this so forgive me if the question was already asked. I just bought a Satellite U200-170, and I want to register my self on the Toshiba site to pick up and return services and other services they offer.
    The question now is that when I m using the form, they ask the certificate number, I m not able to find anywhere on my laptop (or I don't know where to look). Could someone help me please?

    Check all your documents that you got with your laptop.
    Moreover, at the bottom of the unit, you will find the serial number.
    As far as I know this number is also required.

  • Cannot delete root a certificate manually with certmgr.

    We are in the processing of the deployment of 802. 1 x throughout the organization. All of the client computers Windows XP SP3 and they are joined to the new Active Directory domain during the migration of the network. (Existing infrastructure is based on Novell NDS, which is being migrated) A GPO has been created in the pub for the 802. 1 x settings and a certification authority root of Thawte primary for all Client computers.

    During the pilot process, we found that there are already two certificates in many machines trusted Local Machine CA root roots of primary Thawte in the store & a Thawte SSL in primary root (which is supposed to be at intermediate CA) it's originally 802. 1 x authentication problem because the GPO does not overwrite these certificates.  Once I have manually remove defective CERT & reapply the GPO, the machine works fine for authentication of 802. 1 x.

    Now to avoid production problems, it is imperative to clean the machines for existing thawte certificates and get applied Group Policy, like machines to join the domain. This cant be done manually because we have more than 1500 workstations.

    Here is the command I tried with the answer.

    certmgr - del - c s root - sha1 91c6d6ee3e8ac86384e548c299295c756c817b81

    Error: Could not delete certificates
    CertMgr failed

    Try to delete the certificate with the certificate number also led to the same result.

    Please advice on how to proceed.

    Thank you

    Karthik Rama

    Karthik,

    This thread should be useful for you - abolition of certificates of clients by programming
    Here's the article quoted in the thread - How to remove a CA approved of computers in the domain

    If you need help, here's a list TechNet forums for computer professionals -http://social.technet.microsoft.com/Forums/en-us/categories/

    Expert MowGreen Windows IT Pro - consumer safety

  • problem to activate product key number

    1. can not activate this certificate number of product in my pc activation key.

    The product key on the COA sticker will activate the exact same version of the operating system that is on the sticker.  If you reinstall, make sure you have the exact same version.

    Make sure you type the correct characters as it is easy to transpose one or more.

    Remove your title product key because it doesn't have to be aired in a public forum, nor should a bank account number.

  • Need help with attention not approved VPN server certificates.

    I've been on the many other posts about it, and they all seem a bit different, so I started my own thread.

    I was sent to my users via the ASA AnyConnect 3.1.02026, and we all get the warning of the Cert of untrusted when connecting VPN server.

    When the ASA deploys the client, it puts the external IP of the SAA as the host name, which causes the error.

    So I have two questions: 1. How can I get the ASA to make host name "vpn.cfo.com" when a user installs the client and 2. How can I change my cert so that it does not show the internal name of the ASA and use 'vpn.cfo.com' instead?

    Here are all the news that everyone should not (I) help to think

    SSL-trust ASDM_TrustPoint0 OUTSIDE_PRIMARY point

    Certificate

    Status: available

    Of the certificate number:

    Use of certificates: Signature

    Public key type: RSA (1024 bits)

    Signature algorithm: SHA1 with RSA encryption

    Name of the issuer:

    hostname = ambossfw01.cfopub .net

    CN = ambossfw01

    Name of the object:

    hostname = ambossfw01.cfopub .net

    CN = ambossfw01

    Validity date:

    start date: 15:17:42 EDT June 2, 2011

    end date: 15:17:42 EDT May 30, 2021

    Trustpoints Associates: ASDM_TrustPoint0

    CA

    Status: available

    Of the certificate number:

    Certificate use: general use

    Public Key Type: RSA (2048 bits)

    Signature algorithm: SHA1 with RSA encryption

    Name of the issuer:

    CN = VeriSign Class 3 Public Primary Certification Authority - G5

    or = (c) 2006 VeriSign\, Inc. - authorized only use

    OU = VeriSign Trust Network

    o = VeriSign\, Inc.

    c = US

    Name of the object:

    CN = VeriSign Class 3 Secure Server CA - G3

    OU = terms of use at https://www.verisign.com/rpa (c) 10

    OU = VeriSign Trust Network

    o = VeriSign\, Inc.

    c = US

    OCSP AIA:

    URL: http://ocsp.verisign.com

    CRL Distribution points:

    [1] http://crl.verisign.com/pca3-g5.crl

    Validity date:

    start date: 19:00:00 EST February 7, 2010

    end date: 18:59:59 EST February 7, 2020

    Trustpoints Associates: _SmartCallHome_ServerCA

    Any help would be greatly appreciated.

    Hello

    Cisco has made a strict checking of KU and EKU in recent versions of AnyConnect, which leads to the warning you got.

    To my knowledge, if you go to 3.1.00495, you will not get this warning, if not, you need to get the valid KU and EKU fields in your certificate of ASA.

    To use specific trustpoint, please check the 'truspoint ssl' command in global configuration mode.

    Mashal

  • CAN YOU HELP ME? me know how to get an Adobe certification number?

    I'm in circular reference 'Support' HELL! No human being! No phones. I need my certificate number for classes taken for Adobe Illustrator, InDesign, Photoshop, etc. and I can't find it in "Support" or "Help" anywhere.

    Try looking in your Adobe ID account

  • HP pavillion500-515na: incorrect warranty information

    (I apologize if this is the wrong wire.)

    Hello

    My office is showing my warranty as expired which is clearly not the case as long as my warranty certificate States 2018

    I contacted HP, shortly after I bought it, April of last year to tell them it was wrong at the time, showing only the standard warranty.they 1 year said they would update the appropriate date 3 years so.

    I have another spent 45 minutes on the phone today only to tell again! to provide proof of purchase and proof of warranty. is it not enough that I provided the guarantee certificate number?

    Forgive me, but it is a no brainer to enter the details of the security in a database, they say that it is not that simple, I beg to differ.

    I just bought an another convertible of computer laptop x 2 HP with an additional 1 year warranty and I expect to have to go through all this again.

    If the email I sent to prove the purchase etc. does not resolve the situation where is my next port of call?

    Concerning

    Just to say a big thanks for your help,

    my warranty status is now show the correct information.

    concerning

    Bob

  • 3-year next day guaranteed business registration on-site

    Hello

    I bought an extended warranty for my laptop, it is a guarantee of 3 years next business day following service. Now, I tried to sign up for the service and it reqognized of certificate number I gave. But when I got to put in my serial key, address and everything, I said that the record could not be fully completed without a copy of the Bill, I had when I bught the guarantee.
    Now who wouldn't be so hard right, except for the fact that there is no email address to send me a copy of my invoice to. So I couldn't e-mail address where I'm supposed to send it, please?

    If you visit this section you can find many threads with email address where you can contact Toshiba.

    By the way the details are at http://eu.computers.toshiba-europe.com/innovation/contact_toshiba.jsp

  • No info on the extended warranty

    I bought an extended warranty for 4 years before an hour, but he knew for a year to program toshiba tempro, also tried to enter the certificate number of my purchase to aps2.toshiba-tro.de/unitdetails/ but it did not show anything on my warranty

    Do you have a confirmation email?

    Try to check this page for details of unit days. Maybe he will be informed of the next few days.

  • Unable to save guaranteed standat

    I don't know how to get my certificate number or the Convention... can someone help me?

    Registration of the laptop is dependent on the country of purchase.
    Where you live and where you bought your laptop?

  • I wish I had a client on my PC to communicate with the Lync server, but it does not work.

    Evaluation of the VHD Lync 2010 program

    I'm quite new to Lync and I'm trying to understand how it all works. I downloaded the virtual computer files and got successfully throughout the environment, but now, I would like to have a client on my PC to communicate with the Lync server but I'm not having any luck.

    Here are the servers that I have:
    DC
    Exum
    Lync-Qms
    Lync-Se
    SPS2010
    These are all in an internal network and I gave the Lync-SE server outside access, assuming that it's the server that my client needs to communicate with because he runs the Lync server. Initially, I was getting a certificate error. I exported the certificate of the server DC, installed on my client and the client toward the DC server who gave me the certificate number, but now I get an error that the server is temporarily unavailable. I'm far from base here?

    Hello

    Thank you for visiting the Microsoft answers community site. Your question is better suited for the IT Pro TechNet public. Please post your question in the TechNet Windows 7 Server forum.

    I hope this helps.

  • How can I recover encrypted after reinstalling Windows jpg files?

    ENCRYPTED JPG FILES

    I recently had a major BONE down and since my laptop running XP Pro) was bought four years ago in a former

    employer, that he hasn't had the recovery discs, I had a techie load discs of my daughter in my laptop. This of course

    led to my loss of all files. I had the backup files to a hard drive stand alone. I had about 6 GB of photos, mostly from the jpg

    which approximately 1/3 have been encrypted. I don't understand why, because all the photos have been scanned or copied on the

    same laptop running XP Pro. I've never knowingly encrypted files. Is it possible I can get these encrypted

    files? I don't have the certificate number of the previous operating system. Still, I don't understand why some files would be

    encrypted while others were not using the same Windows XP Pro operating system. Can you help me? In the opposite case

    I'll have to rescan hundres of photographs. Thank you.

    Yes, the repair shop know what they were doing, but the fact that you gave them a Dell reinstallation CD, as well as the fact that you got the computer back without your files, suggests that what the store did was a "clean install".

    The facts that the files appear in green and the encryption checkbox checked are bad for you.  Both indicate that the files are encrypted in fact using the Windows Encrypting File System (EFS).

    I've never heard of files becomes encrypted without any action of the user, but how the files got encrypted are now irrelevant.

    As far as I KNOW, your only hope is to download the demo version of Elcomsoft application linked in my previous post and see if we can find any trace of the hard disk encryption key which is not crushed by the relocation.  I don't know, but I suspect that the free trial will tell you if it can or cannot decrypt your files... but they will decrypt only really if you pay for it.

    ElcomSoft claims success in situations like yours.  The less you use the computer before you run the data recovery software, the better your chances of recovery.  I think you have to go with the more expensive "professional" version.

Maybe you are looking for