AAA, NAC, Guest Access & BYOD

Amigopod Certificate Upload Fails

Aruba Employee

Amigopod allows the upload of certificates in multiple places: Apache SSL certificates, RADIUS EAP certificate, and MDPS certificates. There are a few common errors that can occur when uploading certificates. 

Possible error #1:
"Certificate verification failed ... unable to get local issuer certificate"

Solution:
The root certificate does not complete the trust chain. Ask the signing CA for the trust chain which includes all necessary intermediate certificates commonly in a .p7b file. Alternatively, get each intermediate CA from the signing CA and append each intermediate and the root CA in one text file. The certificate file will look similar to below:
-----BEGIN CERTIFICATE-----
...
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
...
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
...
-----END CERTIFICATE-----

Possible error #2:
"Private key does not match certificate (error:0B080074:x509 certificate routines:X509_check_private_key:key values mismatch)"

Solution:
The private key on the Amigopod does not match the server certificate. If a new CSR was generated since the original CSR that was signed, the existing private key may have been overridden. Try generating a new CSR and getting a new signed certificate. If you are trying to upload a RADIUS EAP certificate, upgrade to 3.5 to avoid running into a defect in version <= 3.3.

Version history
Revision #:
1 of 1
Last update:
‎06-26-2014 09:16 AM
Updated by:
 
Labels (1)
Contributors
Search Airheads
cancel
Showing results for 
Search instead for 
Did you mean: 
Is this a frequent problem?

Request an official Aruba knowledge base article to be written by our experts.