Cisco » How to remove the remote certificate warning error in FTD/FMC

How to remove the remote certificate warning error in FTD/FMC

Quick search

    Objective: To remove the remote certificate warning error in Firepower Threat Defense (FTD)/Firepower Management Center (FMC).

    Solution:

    To remove the certificate warning error, you need to:

    • Use OpenSSL to generate a private key and Certificate Signing Request (CSR) file.
    • The CSR sent to you should be signed.
    • The certificate, private key, and root or intermediate root certificates should be imported into PKCS12 file.
    • This PKCS12 file should be imported via the FMC and assigned to the remote-access VPN.

    How would you implement the above process? Please refer to the steps below:

    Depending on the platform—IIS, Exchange, cPanel, OpenSSL, and more, the steps to generate CSR varies. Remember to generate the CSR from the same server you plan to install the certificate on and get it signed by CA. Once you get back the signed file, follow the below steps.

    Procedure :

    1. Open FMC and login to your account. Navigate to Objects >> Object Management >> PKI >> Cert Enrollment . Click Add Cert Enrollment and type in the trustpoint name.
    2. Under CA Information tab, select Enrollment type as 'Manual'. Under CA Certificate, paste the Certificate Authority certificate .
    3. Under Certificate Parameters tab, select Include FQDN as 'Custom FQDN'. Ensure the CN and FQDN name are correct.
    4. Fill the details such as IP address, Common Name, OU, etc., accordingly.
    5. Under Key tab, choose name and size of the key. Click Save.
    6. Navigate to Devices >> Certificates >> Add >> New Certificate.
    7. In Add New Certificate dialog box that opens, select the FTD device.
    8. Select Cert Enrollment as the name of the trustpoint that was created. Click the green icon next it and select Yes.
    9. Copy CSR to CA and sign it. The certificate should have attributes as the normal HTTPS server.
    10. After receiving the certificate, select it and click Import.

    Meta-D: Remove the certificate warning by assigning a certificate to the remote access VPN. Steps to import certificate through FMC/FTD.

    EventLog Analyzer

    EventLog Analyzer, a one-stop log management solution, collects, analyzes, correlates, and archives log data from you on-premises as well as cloud network. With its in-depth log analysis capability, EventLog Analyzer helps enterprises to thwart security threats in real-time, spot anomalous user behaviors, and manage security incidents effectively. Want to know how our solution helps you protect your cloud environment? Check out.

    Download now

    EventLog Analyzer Trusted By

    Los Alamos National Bank Michigan State University
    Panasonic Comcast
    Oklahoma State University IBM
    Accenture Bank of America
    Infosys
    Ernst Young

    Customer Speaks

    • Credit Union of Denver has been using EventLog Analyzer for more than four years for our internal user activity monitoring. EventLog Analyzer provides great value as a network forensic tool and for regulatory due diligence. This product can rapidly be scaled to meet our dynamic business needs.
      Benjamin Shumaker
      Vice President of IT / ISO
      Credit Union of Denver
    • The best thing, I like about the application, is the well structured GUI and the automated reports. This is a great help for network engineers to monitor all the devices in a single dashboard. The canned reports are a clever piece of work.
      Joseph Graziano, MCSE CCA VCP
      Senior Network Engineer
      Citadel
    • EventLog Analyzer has been a good event log reporting and alerting solution for our information technology needs. It minimizes the amount of time we spent on filtering through event logs and provides almost near real-time notification of administratively defined alerts.
      Joseph E. Veretto
      Operations Review Specialist
      Office of Information System
      Florida Department of Transportation
    • Windows Event logs and device Syslogs are a real time synopsis of what is happening on a computer or network. EventLog Analyzer is an economical, functional and easy-to-utilize tool that allows me to know what is going on in the network by pushing alerts and reports, both in real time and scheduled. It is a premium software Intrusion Detection System application.
      Jim Lloyd
      Information Systems Manager
      First Mountain Bank

    Awards and Recognitions

    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    A Single Pane of Glass for Comprehensive Log Management

    © 2022 Zoho Corporation Pvt. Ltd. All rights reserved.