28-55
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08
Chapter28 Public Key Infrastructu re
SDP Troubleshooting Tips
SDP Troubleshooting Tips
Use this information before enrolling using Secure Device Provisioning (SDP) to
prepare the connection between the router and the certificate server. If you
experience problems enrolling, you can review these tasks to determine where the
problem is.

Guidelines

When SDP is launched, you must minimize the browser window displaying
this help topic so that you can view the SDP web application.
If you are planning to configure the router using SDP, you should do so
immediately after configuring your WAN connection.
When you complete the configuration changes in SDP, you must return to
SDM and click Refresh on the toolbar to view the status of the trustpoint in
the Router Certificates window in the VPN Components tree.

Troubleshoot Tips

These recommendations involve preparations on the lo cal router and on the CA
server. You need to communicate these requirements to the administrator of the
CA server. Ensure the following:
The local router and the CA server have IP connectivity between each other.
The local router must be able to ping the certificate server successfully, and
the certificate server must be able to successfully ping the local router.
The CA server administrator uses a web browser that supports JavaScript.
The CA server administrator has enable privileges on the local router.
The firewall on the local router will permit traffic to and from the certificate
server.
If a firewall is configured on the Petitioner and/or on the Registrar, you must
ensure that the Firewall permits HTTP or HTTPS traffic from the PC from
which the SDM /SDP application is invoked.
For more information about SDP, refer to the following web page:
http://www.cisco.com/en/US/products/sw/iosswrel/ps5207/products_feature_gui
de09186a008028afbd.html#wp1043332