Why is the SecuExtender VPN client receiving a 'Self-signed certificate not accepted' error?
Options
Zyxel_Emily
Zyxel Employee
Zyxel Employee
Question:
When using the SecuExtender VPN client with the USG FLEX series, such as the USG FLEX 200, you may encounter the error: "Self-signed certificate not accepted for CN = nebula...". This issue often occurs if the VPN certificate has expired or needs renewal.
Answer:
- On Nebula, navigate to Configuration > Remote Access VPN.
- Disable and then re-enable the Remote Access VPN feature. This action will renew the certificate.
- Reboot the USG FLEX device manually.
- Download the new VPN configuration script provided by the device after the certificate is renewed.
- Import the updated VPN script into the SecuExtender VPN client.
- Attempt to reconnect to the VPN using SecuExtender.
Tagged:
0
Categories
- All Categories
- 442 Beta Program
- 3.1K Nebula
- 237 Nebula Ideas
- 6.8K Security
- 740 USG FLEX H Series
- 376 Security Ideas
- 1.8K Switch
- 87 Switch Ideas
- 1.5K Wireless
- 58 Wireless Ideas
- 7.2K Consumer Product
- 319 Service & License
- 512 News and Release
- 99 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 5.3K FAQ
- 34 Documents
- 91 About Community
- 119 Security Highlight