Page 1 of 1
SCEP Client
Posted: Mon May 27, 2013 11:24 am
by jampher
Hi,
I'm trying to set up the scep client on a 411 but I can't set up the "store-name".
When I add the client I'm asked to enter a "store-name" and no matter what I enter I get the following -
failure: At least one field specifying certificate name must be set!
Has anyone had any success or know what I'm doing wrong?
Thanks
Re: SCEP Client
Posted: Mon May 27, 2013 12:12 pm
by mrz
You have to enter one of certificate fields, just as error says, common-name, serial-number or any other.
Re: SCEP Client
Posted: Mon May 27, 2013 12:46 pm
by jampher
Thank you, that works.
One more thing, the SCEP server is listening on port 8777 but I've noticed that the requests from the RB are sent to port 80.
Is there a way to change the port?
Thanks
Re: SCEP Client
Posted: Fri Jul 19, 2013 3:32 am
by J0K3R
Hello.
I have the same problem
When I add the client I'm asked to enter a "store-name" and no matter what I enter I get the following -
failure: At least one field specifying certificate name must be set!
and I don't understand what I have to enter
You have to enter one of certificate fields, just as error says, common-name, serial-number or any other.
Where can I find step-by-step
HowTO setup "SCEP Client".
Here is minimum info.
Thanks in advance
Re: SCEP Client
Posted: Thu Nov 07, 2013 12:27 am
by drdrdr
I don't get it. Mikrotik makes efort to make something possible but don't make documentation.
Re: SCEP Client
Posted: Thu Nov 07, 2013 9:06 am
by janisk
this code and configuration menus received major overhaul, documentation will be available shortly as SCEP configuration menus become finalized.
Re: SCEP Client
Posted: Thu Feb 20, 2014 1:20 am
by bessome
I try use scep client witt cisco ca server and get an error:
[admin@MikroTik] /certificate scep client> print value-list
name: s15.Core
status: requesting-ca-capabilities-failed
server: 10.70.1.1
path: /cgi-bin
store-name: sample.cer
ca-identity: s15.Core
fingerprint-algorithm: sha1
req-fingerprint:
ca-fingerprint:
common-name: SAMPLE
key-bits: 2048
challenge-password:
I've tried different path without success
Re: SCEP Client
Posted: Thu Feb 20, 2014 4:36 pm
by bessome
I've found right path but ded SCEP client dosn't work normal.
there are CA server logs:
Feb 20 14:28:18.681: CRYPTO_CS: received a SCEP GetCACaps request
Feb 20 14:28:18.681: CRYPTO_CS: Capabilities sent
Feb 20 14:28:18.741: CRYPTO_CS: received a SCEP GetCACert request
Feb 20 14:28:18.773: CRYPTO_CS: CA certificate sent
Feb 20 14:28:25.565: CRYPTO_CS: received a SCEP request, 3052 bytes
Feb 20 14:28:25.565: CRYPTO_CS: failed to base64 decode request
on mikrotik
status: requesting-certificate-failed