Overview
A root CA certificate used by cnMaestro On-Premises to validate PTP 820 and PTP 850 software image bundles downloaded from cnMaestro Cloud has expired.
As a result, software image downloads may fail because the downloaded bundle cannot be validated using the existing root CA certificate.
This issue may affect cnMaestro On-Premises deployments running versions earlier than 6.0.0.
Required Action
If PTP 820 or PTP 850 software image downloads fail and your cnMaestro On-Premises deployment is running a version earlier than 6.0.0, run the following command on the cnMaestro On-Premises server:
curl -fsSL https://registry.cloud.cambiumnetworks.com/repository/raw-hosted/cnmaestro/ova/validation/update_cnmaestro_root_ca.sh | sudo bash
This command updates the root CA certificate used to validate downloaded software image bundles.
Steps
-
Log in to the cnMaestro On-Premises server CLI.
-
Run the root CA update command shown above.
-
After the command completes successfully, retry the PTP 820 or PTP 850 software image download from cnMaestro Cloud.
-
Continue with the normal device software upgrade process.
Note
The root CA update only needs to be performed once on the cnMaestro On-Premises server. After updating the certificate, cnMaestro On-Premises will be able to validate and import the latest PTP 820 and PTP 850 software image bundles.
Support
If software image downloads continue to fail after updating the root CA certificate, contact Cambium Networks Support and provide the relevant download logs and cnMaestro On-Premises version details.