Sometimes old equipment fails in mysterious ways. This time a whole fleet of Cisco Aironet 3700 Series Access Points disappeared from their controller. The access points have “Manufacturing Installed Certificates” and these certificates will expire sooner or later. In this case, the certificates expired sometime during the weekend.

One workaround is to tell the controller to ignore the expiration dates.

config ap cert-expiry-ignore mic enable
config ap cert-expiry-ignore ssc enable
save config

Another workaround is to generate “Locally Significant Certificates.”

See CSCuq19142 for more details.


Oh, and the correct term is “Manufacture Installed Certificate.”

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes:

<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <s> <strike> <strong>