<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS 4.2 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-4-2/m-p/2894817#M39284</link>
    <description>&lt;P&gt;We have an old ACS 4.2 that needs to have the cert upgraded for SHA2 and I do not see that as a choice in the dropdown menu.&amp;nbsp; SHA1 is the last entry.&amp;nbsp; It needs to be upgraded to match our production LDAP environment.&amp;nbsp; I only have access to this box via IE6 from an old Windows 2003 server.&amp;nbsp; I do not have the local admin password to SSH into the box.&amp;nbsp; Is the SHA2 cert supported on the ACS 4.2 device?&amp;nbsp; If so, how can it be updated?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Lance&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 06:53:16 GMT</pubDate>
    <dc:creator>lance.benfield1</dc:creator>
    <dc:date>2019-03-11T06:53:16Z</dc:date>
    <item>
      <title>ACS 4.2</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-2/m-p/2894817#M39284</link>
      <description>&lt;P&gt;We have an old ACS 4.2 that needs to have the cert upgraded for SHA2 and I do not see that as a choice in the dropdown menu.&amp;nbsp; SHA1 is the last entry.&amp;nbsp; It needs to be upgraded to match our production LDAP environment.&amp;nbsp; I only have access to this box via IE6 from an old Windows 2003 server.&amp;nbsp; I do not have the local admin password to SSH into the box.&amp;nbsp; Is the SHA2 cert supported on the ACS 4.2 device?&amp;nbsp; If so, how can it be updated?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Lance&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:53:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-2/m-p/2894817#M39284</guid>
      <dc:creator>lance.benfield1</dc:creator>
      <dc:date>2019-03-11T06:53:16Z</dc:date>
    </item>
    <item>
      <title>Hello Lance. Unfortunately,</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-2/m-p/2894818#M39285</link>
      <description>&lt;P&gt;Hello Lance. Unfortunately, SHA2 is not supported by ACS 4.x. Support for SHA2 was added in ACS v5.2:&lt;/P&gt;
&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/net_mgmt/cisco_secure_access_control_system/5-2/release/notes/acs_52_rn.html#wp157364"&gt;http://www.cisco.com/c/en/us/td/docs/net_mgmt/cisco_secure_access_control_system/5-2/release/notes/acs_52_rn.html#wp157364&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Since ACS 4.x is EoL/EoS you should consider upgrading. However, I would suggest looking at ISE instead of ACS 5.x. Recently, TACACS+ was added to ISE so there are very few features that are not supported by ISE, so I would not be surprised if ACS 5.x also goes into EoL/EoS sometimes this year.&lt;/P&gt;
&lt;P&gt;I hope this helps!&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jun 2016 07:49:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-2/m-p/2894818#M39285</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2016-06-24T07:49:46Z</dc:date>
    </item>
  </channel>
</rss>

