<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528130#M509505</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you resolve your problem ???&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 04 Jun 2018 12:33:22 GMT</pubDate>
    <dc:creator>ognyan.totev</dc:creator>
    <dc:date>2018-06-04T12:33:22Z</dc:date>
    <item>
      <title>684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528117#M509492</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;While authenticating phones signed by a CA-Signed CAPF, ISE fails to authenticate the phones with the error being, "client certificate is missing the complete chain".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On extracting the client certificate form the ISE pcaps, we observed the whole chain to be present in the certificate. However, the client complained that the Intermediate CA is not valid for the selected purpose, "This certificate does not appear to be valid for the selected purpose" (Attached as Client certificate)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On observing the logs it displays that, "&lt;SPAN style="font-size: 11.0pt; font-family: 'Times New Roman',serif; color: #1f497d;"&gt;Crypto,2018-05-22 02:36:24,630,DEBUG,0x7f67fae65700,NIL-CONTEXT,Crypto::Result=0, &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 11.0pt; font-family: 'Times New Roman',serif; color: #1f497d;"&gt;&lt;SPAN style="color: #1f497d; font-family: 'Times New Roman', serif; font-size: 14.6667px;"&gt;CryptoLib.CSSL.x509ExceptionCallback - &lt;/SPAN&gt;&lt;SPAN style="background: yellow;"&gt;problematic certificate issuer=", &lt;EM&gt;which is followed by the Intermediate CA Subject.&lt;/EM&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #1f497d; font-size: 11.0pt; background: yellow; font-family: 'Times New Roman',serif;"&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;All the certificates are enabled to perform server and client authentication. However, I observed that the Root CA had the key usage as "non-repudiation" as one of the attributes. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could someone share a document or shed some light into the parameters that are required for the root certificates for a successful authentication of the client.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2018 02:27:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528117#M509492</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-05-30T02:27:35Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528118#M509493</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First you must be sure that all certificate from chain are inserted in Ise side . They are Cisco manufecturing . Cisco Capf certificate from call manager and cisco root Ca again from call manager. In mine lab we make even old phones like model 7911 to work with capf. You must configure authentication for them to use X509 .pki and subject alternative name contains exact you Capf -3557766 . This is the exact same number by exported from call manager certificate.One more thin when you go to phone are you sure LSC is installed on it ?? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2018 03:23:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528118#M509493</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-05-30T03:23:15Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528119#M509494</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for your response Ognyan.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;They had the LSC that was directly signed by CAPF ( without being signed by CA) and that worked.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;They have LSC installed and have followed the below document :&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/IP_Tele/IP_Telephony_DIG.html#pgfId-389585" title="https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/IP_Tele/IP_Telephony_DIG.html#pgfId-389585"&gt;https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/IP_Tele/IP_Telephony_DIG.html#pgfId-38…&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When trying to authenticate using certificate, ISE radius live logs show error as, "12514 EAP-TLS failed SSL/TLS handshake because of an unknown CA in the client certificates chain".&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2018 04:09:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528119#M509494</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-05-30T04:09:41Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528120#M509495</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thats what i told you . You missed to import one of certificates in ise side. And please be sure you enable cisco manufaturing ca in ise . In Ise 2.2 the certificate is there but is not enable.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2018 04:34:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528120#M509495</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-05-30T04:34:23Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528121#M509496</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I worked on same guide and all working well. This is mine certificate from call manager :&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/117270_pastedImage_0.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;P&gt;Without it they never work &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2018 05:12:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528121#M509496</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-05-30T05:12:39Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528122#M509497</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The Root and the intermediate CA of client is present on ISE. Is there any other certificate we need to install in ISE?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2018 07:08:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528122#M509497</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-05-30T07:08:02Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528123#M509498</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes there is as i told you before &lt;IMG alt="" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/117271_pastedImage_0.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;P&gt;This 3 plus CAPF certificate from call manager imported in trusted store .As i show you before mine is this CAPF&lt;/P&gt;&lt;P&gt;Your maybe different but start is always same .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 30 May 2018 07:18:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528123#M509498</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-05-30T07:18:17Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528124#M509499</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;All the certificates are already present on ISE including the CAPF certificate. They had been working with old certs. Is there a document that describes the key usage and other components required for the root-CA ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 May 2018 04:43:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528124#M509499</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-05-31T04:43:45Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528125#M509500</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here you are &lt;/P&gt;&lt;P&gt;&lt;A class="loading" href="https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/IP_Tele/IP_Telephony_DIG.html" title="https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/IP_Tele/IP_Telephony_DIG.html"&gt;https://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/TrustSec_1-99/IP_Tele/IP_Telephony_DIG.html &lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Jun 2018 08:33:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528125#M509500</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-06-01T08:33:13Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528126#M509501</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;however, this is the link I have referred in the second thread. This doc does not mention the attributes required for the Root certificate.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Jun 2018 09:04:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528126#M509501</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-06-01T09:04:18Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528127#M509502</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes there it is i try show you:&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/117333_pastedImage_0.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="jive-image image-2" src="https://community.cisco.com/legacyfs/online/fusion/117334_pastedImage_1.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="jive-image image-3" src="https://community.cisco.com/legacyfs/online/fusion/117335_pastedImage_2.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;P&gt;This is for ACS but it is almost same for ISE&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Jun 2018 09:08:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528127#M509502</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-06-01T09:08:33Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528128#M509503</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for the images.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;however, they are looking for the attributes the certificate should be signed with. For example, the fields to be populated in the Key usage, SN and likewise&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Jun 2018 09:22:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528128#M509503</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-06-01T09:22:26Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528129#M509504</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes they are you must create certificate profile like this&amp;nbsp; and use it in policy sets for authentication &lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/117336_pastedImage_0.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="jive-image image-2" src="https://community.cisco.com/legacyfs/online/fusion/117337_pastedImage_1.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 01 Jun 2018 09:30:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528129#M509504</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-06-01T09:30:04Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528130#M509505</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you resolve your problem ???&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Jun 2018 12:33:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528130#M509505</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-06-04T12:33:22Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528131#M509506</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Not yet Ognyan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When CAPF is self signed they are getting it to work. The issues arise when the CAPF is signed by the root CA and the Root and Intermediate CA is present in ISE trusted store.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As mentioned when the question was posted, the set up seems to be fine. However, ISE complains that the certificate is problematic and we are looking for a document that explains the attributes/fields required by the Root CA.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Jun 2018 02:06:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528131#M509506</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-06-05T02:06:10Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528132#M509507</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The below document was shared with the customer : &lt;SPAN style="font-size: 11.0pt; font-family: 'Calibri',sans-serif; color: #1f497d;"&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/unified-communications/unified-communications-manager-callmanager/212214-Tech-Note-on-CAPF-Certificate-Signed-by.html"&gt;&lt;SPAN style="color: purple;"&gt;https://www.cisco.com/c/en/us/support/docs/unified-communications/unified-communications-manager-callmanager/212214-Tech-Note-on-CAPF-Certificate-Signed-by.html&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Jun 2018 01:18:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528132#M509507</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-06-06T01:18:06Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528133#M509508</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I found an on-going ISE ESC case on this. Please continue with that case as this appears needing deep debugging to sort it out. Also see &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-4/compatibility/b_ise_sdt_24.html#requirementsforca"&gt;Requirements for CA to Interoperate with Cisco ISE&lt;/A&gt;&lt;SPAN style="font-size: 10pt;"&gt; in ISE compatibility guide.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 16 Jun 2018 21:50:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528133#M509508</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2018-06-16T21:50:41Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528134#M509509</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thank you for your inputs&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 17 Jun 2018 08:47:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3528134#M509509</guid>
      <dc:creator>mumustha</dc:creator>
      <dc:date>2018-06-17T08:47:58Z</dc:date>
    </item>
    <item>
      <title>Re: 684510397 - UCM\\ Enable 802.1x\CAPF\phone not working\reference:684325552</title>
      <link>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3958444#M509510</link>
      <description>&lt;P&gt;I am facing similar issue - Did anyone get this working?&lt;/P&gt;</description>
      <pubDate>Thu, 14 Nov 2019 08:10:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/684510397-ucm-enable-802-1x-capf-phone-not-working-reference/m-p/3958444#M509510</guid>
      <dc:creator>vakolkargugg</dc:creator>
      <dc:date>2019-11-14T08:10:01Z</dc:date>
    </item>
  </channel>
</rss>

