utils ctl reset localkey, run on the publisher, regenerates the CTL file signed with the CallManager key (secondary SAST) for when the ITLRecovery certificate has changed and endpoints are locked out. Run utils ctl update CTLFile again afterwards.
Checked 2026-10-01
- Vendor
- Cisco
- Product
- Unified Communications Manager
- Subsystem
- CTL
- Deployment
- on-premises
- Region
- not restricted
- Release range
- 15 and SUs
- Checked
- 2026-10-01
Sources
- Command Line Interface Reference Guide for Cisco Unified Communications Solutions, Release 15 and SUs - Utils Commands — Cisco Systems · tier 2 current vendor documentation · utils ctl reset localkey command entry
Cite this note
APA
WarmTransfer. (2026, October 1). Troubleshooting phone trust and ITL failures in Unified CM: source note cucm-itl-trust-troubleshooting-ctl-reset-localkey. WarmTransfer. https://warmtransfer.net/knowledge/claims/cucm-itl-trust-troubleshooting-ctl-reset-localkey
BibTeX
@misc{warmtransfer-claim-cucm-itl-trust-troubleshooting-ctl-reset-localkey,
title = {Troubleshooting phone trust and ITL failures in Unified CM: source note cucm-itl-trust-troubleshooting-ctl-reset-localkey},
author = {{WarmTransfer}},
year = {2026},
url = {https://warmtransfer.net/knowledge/claims/cucm-itl-trust-troubleshooting-ctl-reset-localkey},
note = {Source note cucm-itl-trust-troubleshooting-ctl-reset-localkey, checked 2026-10-01}
}