reg88.com

fine...I'll blog too

Configure Cisco WebVPN to Use a Signed Certificate

If you like to install a Signed Certificate on your cisco Router…

  1. Create a new CSR on Test IIS Server
  2. Submit CSR to CA
  3. Once Signed/Generated, download the newly generated PKCS12 certificate and import to IIS
  4. Export the new certificate via MMC
          – Export .example.com certificate from “Personal Certificate” with key
          – Include all certificates in the path (CA, Intermediate)*
  5. Place the exported .pfx file onto a tftp server
  6. On the Cisco Router:
1
2
crypto pki import ExampleWildcard-Crt pkcs12 tftp://10.10.10.65/certificate_file  
!Yes to all

Updated the WebVPN configuration to use the new certificate:

1
2
webvpn gateway VTX-Admins
ssl trustpoint ExampleWildcard-Crt