I'm working on ISE to learn certificate management on it. I completed the process by binding a certificate to previously generated CSR. I chose "EAP Authentication" and "Portal" as the new certificate usage while doing binding task on ISE. then I decided to include "Admin" as its usage to to be able to use the new CA while accessing the ISE through my PC browser. but the following Error message appears:
"Certificate must contain the FQDN 'cisco-ise.eb.com.tr' or a matching wildcard in the common name (CN) component of Subject field."
I reviewed the details and found that I set the CN to "ise.test.com" while the node hostname was "cisco-ise.test.com". then I tried to generate another CSR with the CN set to "cisco-ise.test.com" in order to use it in "admin" usage, but this time another error message was shawn as follows:
"You are attempting to generate a CSR whose subject matches the subject of an existing certificate on the same node. This is only permitted when you are replacing a certificate of the same role. Note that the subject is the concatenation of several fields (for example, CN, O, OU, etc.) You can create a unique subject by varying the values in these fields."
what can I do?