SMA 500v - 10.2.1.12 - Lets Encrypt fails, Appliance struggles
Is there any known issue that requesting a Lets Encrypt Certificate on SMA 500v runing 10.2.1.12 fails and after that the appliance is acting weird? I'am not able to get a TSR because the wait indicator is circling for ever. Even trying to log into the SMA again is failing with endless waiting.
The login fails after 3 minutes, a reboot solves the issue.
That's problematic because all of my SMAs are updated to 10.2.1.12, even those using LE certs with upcoming certificate renewals.
UPDATE: It's related to GeoIP, if I disable GeoIP blocking the cert gets issued. Now I have to figure out which Countries I need to allow, I guess it's US at least, which was on my block list.
—Michael@BWC
Best Answer
-
BWC Cybersecurity Overlord ✭✭✭
Enabling United States and Sweden did the trick, not sure if Singapore needs to be added as well, but it works without it.
Needless to say that's nothing I really want, because allowing access from Countries we don't expect connections from is not helpful.
—Michael@BWC
0
Answers
Had exactly the same issue, fixed it using your info above. Would be handy if error messages were a bit more obvious :-)
Thanks!!