Error generating a new certificate

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Error generating a new certificate

L4 Transporter

Hi, we are trying to generate a new elf-signed certificate in Panorama and we receive this error: Failed to insert certificate into configuration. Failed to find beginning of certificate. Make sure certificate starts with BEGIN CERTIFICATE tag.

 

This is the certificate and the error:

 

cert1.JPG

 

cert2.JPG

 

Why are we receiving this error?

 

16 REPLIES 16

Just had the same here using Chrome & POS version 11.0.3.  I generated one cert on one FW with no issue via Panorama.  When I attempted the second FW I got  "Failed to insert CSR into configuration. Internal error. Failed to insert xml node."

While I was mucking about trying things I also got "Failed to insert certificate into configuration. Only self signed CA certificates can have identical subject and issuer fields."

Ctrl+F5 didn't help so I just logged out of Panorama and back in and it went through fine with the exact same settings.

Something cached in the login I guess. Perhaps hanging onto something related to the first cert?

L0 Member

I believe found the root cause, in a way that also explains the "fixes" from everyone else.

 

The issue is caused by a timeout of the admin session onto the management GUI, have you ever been working through the firewalls onto the local ones or via Panorama, went to do something else, back onto the GUI and after a while things seem to not work fine, reload the page on the browser and automatically prompted with the login page to the management?

 

Same here, reload the page, login again, try import the same cert again, issue gone.

Explains how other people went to try on another browser and it worked straight away (because they would have to log in fresh to the mgmt)

 

Cheers!

Mariano Martinez
  • 17366 Views
  • 16 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!