SMA 500v - 10.2.1.12 - Lets Encrypt fails, Appliance struggles
BWC
Cybersecurity Overlord ✭✭✭
Is there any known issue that requesting a Lets Encrypt Certificate on SMA 500v runing 10.2.1.12 fails and after that the appliance is acting weird? I'am not able to get a TSR because the wait indicator is circling for ever. Even trying to log into the SMA again is failing with endless waiting.
The login fails after 3 minutes, a reboot solves the issue.
That's problematic because all of my SMAs are updated to 10.2.1.12, even those using LE certs with upcoming certificate renewals.
UPDATE: It's related to GeoIP, if I disable GeoIP blocking the cert gets issued. Now I have to figure out which Countries I need to allow, I guess it's US at least, which was on my block list.
—Michael@BWC
Category: Secure Mobile Access Appliances
0
Answers
Enabling United States and Sweden did the trick, not sure if Singapore needs to be added as well, but it works without it.
Needless to say that's nothing I really want, because allowing access from Countries we don't expect connections from is not helpful.
—Michael@BWC