Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    PfSense Cert Creation - Alternate Names?

    General pfSense Questions
    1
    2
    964
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • E
      ElectroPulse last edited by

      Hello, all!

      I've had issues with cert errors ever since I set up transparent HTTPS filtering on pfSense, so I'm going back through and blowing everything away, and re-generating CAs and certs to do it up right.

      Anyway, after creating the CA, I've created a cert to be used for the webgui. I would like to be able to access the webgui and not get a cert error if the CA is installed on a computer.

      I've got it working if I enter the FQDN as the address, but am unable to get it working with IP addresses. For example, if on VLAN 1 the interface IP address is 192.168.1.1, I would like to be able to enter that without getting a cert error.

      I've entered all of the IP addresses under the "Alternative Names" area, specifying the "Type" as "IP."

      Upon getting the cert error, it tells me that the cert is for a different domain. I go into the cert's properties, and it mentions all the IP address that I specified under "Subject" in the following manner:
      Certificate Subject Alt Name = "IP:192.168.1.1,IP:192.168.2.1,IP:192.168.3.1,IP:192.168.4.1,IP:192.168.5.1"

      Am I missing something here?

      Thanks!
      ElectroPulse

      1 Reply Last reply Reply Quote 0
      • E
        ElectroPulse last edited by

        Upon further searching, it appears that it is not actually a fully-implemented feature… https://forum.pfsense.org/index.php?topic=68512.0

        Any recommendations of how I could use an already-created CA to generate a certificate with some other cert creating software? (or via commandline in pfSense)

        1 Reply Last reply Reply Quote 0
        • First post
          Last post

        Products

        • Platform Overview
        • TNSR
        • pfSense
        • Appliances

        Services

        • Training
        • Professional Services

        Support

        • Subscription Plans
        • Contact Support
        • Product Lifecycle
        • Documentation

        News

        • Media Coverage
        • Press
        • Events

        Resources

        • Blog
        • FAQ
        • Find a Partner
        • Resource Library
        • Security Information

        Company

        • About Us
        • Careers
        • Partners
        • Contact Us
        • Legal
        Our Mission

        We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

        Subscribe to our Newsletter

        Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

        © 2021 Rubicon Communications, LLC | Privacy Policy