Yes. We are hitting that defect. But, it's really just a problem because Cisco uses a self signed certificate with their DMPs to verify their public key. We don't use a DMM and that hotfix is only to fix the issue that Cisco
had with their own software and the DMP. It doesn't fix any 3rd party
software issue until the 3rd party software can release a version that
doesn't check the certificates. The only way for 3rd party software to get a trusted certificate is to access the DMPs through a browser and export the certificate into a keystore.
We have customers with multiple DMPs (up to 30) on a network controlled by our software. We have read that we need to import a unique certificate for every DMP; however, after exporting the certificate in a browser to a file and importing that file into the keystore, we noticed that the certificates looked identical for every DMP. We thought that maybe Cisco used a root certificate, which would make the task easier.
So, we are trying to find out if we need to import a certificate for every DMP or if they use a root certificate.
-Kathy
Are you sure that you are not hitting this defect?
http://www.cisco.com/en/US/ts/fn/634/fn63496.html
-Keith
From: Cisco Developer Community Forums [mailto:cdicuser@developer.cisco.com]
Sent: Thursday, March 29, 2012 2:03 PM
To: cdicuser@developer.cisco.com
Subject: New Message from Stephanie McQuown in Digital Media Suite API - Digital Signs API Forum: Security Certificate Multiple DMPs
Stephanie McQuown has created a new message in the forum "Digital Signs API Forum":
--------------------------------------------------------------
We are a control system software developer with a customer with about 30 DMPs. All DMPs were not communicating properly, so we thought we would need to update the security certificates. After updating one certificate, about 10 of the DMPs started working. Updating a second unique certificate fixed about another 5. We have read here in the forums that each DMP would need a unique certificate. Any idea why several DMPs would start working when a single certificate was updated? Also is there a way to install a root certificate that would update all the DMPs?
--
To respond to this post, please click the following link:
<http://developer.cisco.com/web/dms/forums/-/message_boards/view_message/5377381>
or simply reply to this email.