Guest User!

You are not Sophos Staff.

Certificate renewal fails if used in web server protection rule

I have a policy rule "Protect with web server protection" for an HTTPS web server. Therefore in this policy rule there is a certificate configured.

When I try to upload a new certificate into the certificate object, I get the error "Certificate could not be updated as it is already used by HTTP-based policy".

If I reconfigure the webserver protection to use only http (and therefore no certificate), i can renew the certificate. After that, I have to reconfigure the web server protection again.

Parents
  • Is this specific to V19.0? Because as far as i remember, this is always the case, if the WAF holds a cert, you cannot upgrade the using cert in the backend. You need to specify a new name for the cert by upload and select the new certificate. 

    __________________________________________________________________________________________________________________

Reply
  • Is this specific to V19.0? Because as far as i remember, this is always the case, if the WAF holds a cert, you cannot upgrade the using cert in the backend. You need to specify a new name for the cert by upload and select the new certificate. 

    __________________________________________________________________________________________________________________

Children
No Data