<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic The ISE CA is not trusted by in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990665#M37584</link>
    <description>&lt;P&gt;The ISE CA is not trusted by any mobiles. The ISE generates a ROOT CA cert and then it issues a cert to the ISE&amp;nbsp;Sub/Intermediate CA. This is the CA that issues certs for BYOD.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;The truted cert you bought&amp;nbsp;is for the ISE system identification.&lt;/P&gt;</description>
    <pubDate>Wed, 16 Nov 2016 05:36:59 GMT</pubDate>
    <dc:creator>Andre Neethling</dc:creator>
    <dc:date>2016-11-16T05:36:59Z</dc:date>
    <item>
      <title>non-trust cert is shown ,when connect wfi (BYOD solution)</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990662#M37581</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;We bought a cert for ISE.(EAP, &amp;nbsp;admin and default portal).We can check "validate server cert" now.But when we connect to the wifi,it show a non-trust cert.&lt;/P&gt;
&lt;P&gt;I have two question.&lt;/P&gt;
&lt;P&gt;1.What is that cert?&lt;/P&gt;
&lt;P&gt;2.Anyway to let the client trust this cert(already buy a public cert)?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Duncan&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 07:14:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990662#M37581</guid>
      <dc:creator>cheungchunyu</dc:creator>
      <dc:date>2019-03-11T07:14:00Z</dc:date>
    </item>
    <item>
      <title>Is this with all BYOD devices</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990663#M37582</link>
      <description>&lt;P&gt;Is this with all BYOD devices?&lt;/P&gt;
&lt;P&gt;From 1.3, ISE has an integrated CA for BYOD. This CA's Root Certificate is self signed. This is most probably the cert you are not trusting.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 04:56:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990663#M37582</guid>
      <dc:creator>Andre Neethling</dc:creator>
      <dc:date>2016-11-16T04:56:48Z</dc:date>
    </item>
    <item>
      <title>Hello,</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990664#M37583</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;As I mention,we already import a system cert(not self-signed) in ISE.So I believe that mobile endpoint will not received any warning on cert.&lt;/P&gt;
&lt;P&gt;If you said is correct,we need to buy another CA root cert for ise?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Duncan&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 05:20:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990664#M37583</guid>
      <dc:creator>cheungchunyu</dc:creator>
      <dc:date>2016-11-16T05:20:58Z</dc:date>
    </item>
    <item>
      <title>The ISE CA is not trusted by</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990665#M37584</link>
      <description>&lt;P&gt;The ISE CA is not trusted by any mobiles. The ISE generates a ROOT CA cert and then it issues a cert to the ISE&amp;nbsp;Sub/Intermediate CA. This is the CA that issues certs for BYOD.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;The truted cert you bought&amp;nbsp;is for the ISE system identification.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 05:36:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990665#M37584</guid>
      <dc:creator>Andre Neethling</dc:creator>
      <dc:date>2016-11-16T05:36:59Z</dc:date>
    </item>
    <item>
      <title>Hello,</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990666#M37585</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Any way to solve this issue or prevent it happen again?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Duncan&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 05:38:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990666#M37585</guid>
      <dc:creator>cheungchunyu</dc:creator>
      <dc:date>2016-11-16T05:38:54Z</dc:date>
    </item>
    <item>
      <title>Maybe you can add the ISE Sub</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990667#M37586</link>
      <description>&lt;P&gt;Maybe you can add the ISE Sub CA and Root CA certs&amp;nbsp;to the trusted certs of the mobiles. But I suspect this is not a viable option due to the fact that the mobiles are not under your control.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 05:41:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990667#M37586</guid>
      <dc:creator>Andre Neethling</dc:creator>
      <dc:date>2016-11-16T05:41:37Z</dc:date>
    </item>
    <item>
      <title>Hello,</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990668#M37587</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I get your mean,but it is not acceptable in our environment .&lt;/P&gt;
&lt;P&gt;I will double check that what cert is shown when connect to the wifi.&lt;/P&gt;
&lt;P&gt;If you said is ture,I think I need open a support case for this issue.&lt;/P&gt;
&lt;P&gt;As mobile device didnt expect recevie a cert when the device just connect the wifi.&lt;/P&gt;
&lt;P&gt;Anyway,thank you for your idea.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Duncan&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 05:46:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990668#M37587</guid>
      <dc:creator>cheungchunyu</dc:creator>
      <dc:date>2016-11-16T05:46:03Z</dc:date>
    </item>
    <item>
      <title>hello,</title>
      <link>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990669#M37588</link>
      <description>&lt;P&gt;hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I double checked ,the showing cert is EAP cert.&lt;/P&gt;
&lt;P&gt;We only find the apple devices will showing this untrust cert.&lt;/P&gt;
&lt;P&gt;It is a apple device issue.&lt;/P&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;This is an &lt;SPAN class="highlight" id="0.7993383817073134" name="searchHitInReadingPane"&gt;Apple&lt;/SPAN&gt; (iOS) issue. I have raised question in the discussion forum (along with many other users having the same issue)&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;A href="https://discussions.apple.com/message/23391267#23391267" target="_blank"&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;https://discussions.&lt;SPAN class="highlight" id="0.21437562563206725" name="searchHitInReadingPane"&gt;apple&lt;/SPAN&gt;.com/message/23391267#23391267&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;Other discussions regarding the same issue:&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;A href="https://discussions.apple.com/message/21869722#21869722" target="_blank"&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;https://discussions.&lt;SPAN class="highlight" id="0.7313402689449446" name="searchHitInReadingPane"&gt;apple&lt;/SPAN&gt;.com/message/21869722#21869722&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;A href="https://discussions.apple.com/message/20237323#20237323" target="_blank"&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;https://discussions.&lt;SPAN class="highlight" id="0.6529469685957723" name="searchHitInReadingPane"&gt;apple&lt;/SPAN&gt;.com/message/20237323#20237323&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;PRE class="prettyprint"&gt;&lt;FONT face="Courier New" size="2"&gt;&lt;SPAN&gt;&lt;A href="https://discussions.apple.com/message/20338508#20338508" target="_blank"&gt;&lt;FONT face="Calibri,sans-serif" size="3"&gt;&lt;SPAN&gt;https://discussions.&lt;SPAN class="highlight" id="0.1965198248356239" name="searchHitInReadingPane"&gt;apple&lt;/SPAN&gt;.com/message/20338508#20338508&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/PRE&gt;
&lt;P&gt;Duncan&lt;/P&gt;</description>
      <pubDate>Thu, 01 Dec 2016 05:51:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/non-trust-cert-is-shown-when-connect-wfi-byod-solution/m-p/2990669#M37588</guid>
      <dc:creator>cheungchunyu</dc:creator>
      <dc:date>2016-12-01T05:51:43Z</dc:date>
    </item>
  </channel>
</rss>

