Cisco Cisco Firepower 4110 Security Appliance Manuale Tecnico

Pagina di 7
Contents
Introduction
Prerequisites
Requirements
Components Used
Background Information
Configure
Generate a Certificate Signing Request
Import the Certificate Authority certificate chain
Import the signed Identity Certificate for the server
Configure Chassis Manager to use the new certificate
Verify
Troubleshoot
Related Information
Introduction
This document describes how to generate a Certificate Signing Request (CSR) and install the
resulting identity certificate for use with the Chassis Manager for Firepower eXtensible Operating
System (FXOS) on the Firepower 4100 and 9300 series devices.
Prerequisites
Requirements
Cisco recommends that you have knowledge of these topics:
Configuring FXOS from the command line
CSR usage
Private Key Infrastructure (PKI) concepts
Components Used
The information in this document is based on these software and hardware versions:
Firepower 4100 and 9300 series hardware
FXOS versions 1.1 and 2.0
Background Information
After initial configuration, a self-signed SSL certificate is generated for use with the Chassis
Manager web application. Since that certificate is self-signed, it will not be automatically trusted by
client browsers. The first time that a new client browser accesses the Chassis Manager web
interface for the first time, the browser will throw an SSL warning similar to Your connection is not