<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic GET Networkdevice by ID, hidden Secrets in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451215#M256</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I am using ISE 2.1 and 2.2 REST API. (tested on both version)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am requesting a networkdevice by ID with method GET:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #525252; font-family: monospace; font-size: 12.6px;"&gt;&lt;A _jive_internal="true" href="https://community.cisco.com/" rel="nofollow" target="_blank"&gt;https://&lt;/A&gt;&lt;SPAN&gt;&amp;lt;ISE-ADMIN-NODE&amp;gt;:9060/ers/config/networkdevice/{id}&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the response all the "sharedSecrets" (RADIUS and TACACS) are hidden:&lt;/P&gt;&lt;P&gt;&amp;lt;radiusSharedSecret&amp;gt;******&amp;lt;/radiusSharedSecret&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But as per all documentations I found so far, the response should be clear text.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can anybody tell me how to avoid hiding the shared secrets in the networkdevice response?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot&lt;/P&gt;&lt;P&gt;Markus&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 10 Jan 2017 05:35:30 GMT</pubDate>
    <dc:creator>m.rainer</dc:creator>
    <dc:date>2017-01-10T05:35:30Z</dc:date>
    <item>
      <title>GET Networkdevice by ID, hidden Secrets</title>
      <link>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451215#M256</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I am using ISE 2.1 and 2.2 REST API. (tested on both version)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am requesting a networkdevice by ID with method GET:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #525252; font-family: monospace; font-size: 12.6px;"&gt;&lt;A _jive_internal="true" href="https://community.cisco.com/" rel="nofollow" target="_blank"&gt;https://&lt;/A&gt;&lt;SPAN&gt;&amp;lt;ISE-ADMIN-NODE&amp;gt;:9060/ers/config/networkdevice/{id}&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the response all the "sharedSecrets" (RADIUS and TACACS) are hidden:&lt;/P&gt;&lt;P&gt;&amp;lt;radiusSharedSecret&amp;gt;******&amp;lt;/radiusSharedSecret&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But as per all documentations I found so far, the response should be clear text.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can anybody tell me how to avoid hiding the shared secrets in the networkdevice response?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot&lt;/P&gt;&lt;P&gt;Markus&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 10 Jan 2017 05:35:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451215#M256</guid>
      <dc:creator>m.rainer</dc:creator>
      <dc:date>2017-01-10T05:35:30Z</dc:date>
    </item>
    <item>
      <title>Re: GET Networkdevice by ID, hidden Secrets</title>
      <link>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451216#M257</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Marcus,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm seeing the same thing, ever get this resolved?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jason&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 16:08:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451216#M257</guid>
      <dc:creator>j656</dc:creator>
      <dc:date>2017-08-23T16:08:48Z</dc:date>
    </item>
    <item>
      <title>Re: GET Networkdevice by ID, hidden Secrets</title>
      <link>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451217#M258</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I just tested with ISE 2.3.0.298 and I successfully retrieved a NetworkDevice's radiusSharedSecret in cleartext and not hidden.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The account I was using is a member of the &lt;STRONG&gt;ERS Operator&lt;/STRONG&gt; RBAC group for GET-only operations.&lt;/P&gt;&lt;P&gt;Administration &amp;gt; System &amp;gt; Admin Access &amp;gt; Administrators &amp;gt; Admin Users:&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="jive-image image-2" src="https://community.cisco.com/legacyfs/online/fusion/110713_pastedImage_3.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please verify the RBAC permissions of your account you are using for the REST APIs does not have any other RBAC limits that might prevent you from seeing the network device password.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 23:02:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451217#M258</guid>
      <dc:creator>thomas</dc:creator>
      <dc:date>2017-08-23T23:02:59Z</dc:date>
    </item>
    <item>
      <title>Re: GET Networkdevice by ID, hidden Secrets</title>
      <link>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451218#M259</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the reply Thomas,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm running 2.2.0.470 Patch 1.&amp;nbsp; And I've tried an account setup as both ERS Admin, and ERS Operator, but I'm still getting the output below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;authenticationSettings&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;enableKeyWrap&amp;gt;false&amp;lt;/enableKeyWrap&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;keyInputFormat&amp;gt;ASCII&amp;lt;/keyInputFormat&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;networkProtocol&amp;gt;RADIUS&amp;lt;/networkProtocol&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;radiusSharedSecret&amp;gt;******&amp;lt;/radiusSharedSecret&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/authenticationSettings&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm assuming its a 2.2 thing.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 Aug 2017 12:46:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/get-networkdevice-by-id-hidden-secrets/m-p/3451218#M259</guid>
      <dc:creator>j656</dc:creator>
      <dc:date>2017-08-24T12:46:07Z</dc:date>
    </item>
  </channel>
</rss>

