cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
302
Views
2
Helpful
1
Replies

Don't export certs via SSH on Catalyst 9800-40

Bernd Nies
Level 1
Level 1

Hi,

Just experienced this last week during renewal of SSL certificate: Don't run this command to export certificate and private key when logged in via SSH. It will cause a panic reboot of the WLAN C9800-40 controller.

crypto pki export <trustpoint> pkcs12 terminal password <password>

Export to flash instead and then copy the output file.

crypto pki export <trustpoint> pkcs12 flash:/test.pfx password <password>

Happens also with IOS XE 17.9.3 and not just the versions listed there. Also not fixed yet in 17.9.4.

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwf14607

Regards,

Bernd

 

1 Reply 1

Thank you for the information. 

Review Cisco Networking for a $25 gift card