SSH

For a period of days I am working on replacing self-signed certificates in my environment and I found one issue with my enclosure. My certificate authority supports only 2048 Bits Certificate Signing Requests and in my case enclosure had 1024 Bits certificate. I found solution how to quickly fix problem and replace self-signed certificate.

Hardware details:

HP c7000 enclosure

Onboard Administrator: 4.30

How to generate new self-signed certificate in HP c7000 enclosure - certificate info

How to generate 2048 Bits certificate

Procedure itself is really simple. According to HP documentation http://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c03659074 if you reset Onboard Administrator then new key will be generated.

HP info

To switch from 1024-bit to 2048-bit keys you needed to first reset the OA configuration to factory defaults which would cause the generation of new keys.

Certificate generation

Starting from Onboard Administrator version 3.56 you can do it easier.

How to generate new self-signed certificate in HP c7000 enclosure - generate ssl ssh key

 

 

Simply login to Onboard Administrator using SSH and execute this command

You will be asked if you want to regenerate private keys. Answer yes and Onboard Administrator will be restarted.

How to generate new self-signed certificate in HP c7000 enclosure - confirm

 

After restart you will have new fresh 2048 Bits certificate.

How to generate new self-signed certificate in HP c7000 enclosure - new 2048 Bits key

Repeat same step for second Onboard Administrator.

How to generate new self-signed certificate in HP c7000 enclosure
Rate this post
Wojciech Marusiak
Social Media

Wojciech Marusiak

Senior Solutions Cloud Architect at Consort CT
I am innovative and experienced VMware and Windows Server Engineer with over 10 years in the IT industry specializing in VMware virtualization and Microsoft Server environment.

My experience and skills have been proven by leading vendor certifications like VMware Certified Implementation Expert 6 – Data Center Virtualization, VMware Certified Advanced Professional 6 – Data Center Virtualization Design, VMware Certified Professional 6 - Data Center Virtualization, VMware Certified Professional 6 - Network Virtualization, AWS Certified Solutions Architect - Associate, ITIL V3, VMware vExpert 2014 - 2017 and VMware vExpert NSX 2017 Award.

My blog wojcieh.net - was voted #43 in Top vBlog 2017 contest!
Wojciech Marusiak
Social Media

Latest posts by Wojciech Marusiak (see all)