<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CSCwa47133 - ISE 3.1 - Log4j Patch Availability? in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520207#M571762</link>
    <description>&lt;P&gt;In fairness to Cisco, they did say that the patch was for ISE 2.4 through 3.0 - perhaps it's already fixed in ISE 3.1? Or they have not yet got around to fixing it. Or perhaps ISE 3.1 doesn't use this Apache library?&amp;nbsp; Who knows.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Nice try though &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 16 Dec 2021 21:46:19 GMT</pubDate>
    <dc:creator>Arne Bier</dc:creator>
    <dc:date>2021-12-16T21:46:19Z</dc:date>
    <item>
      <title>CSCwa47133 - ISE 3.1 - Log4j Patch Availability?</title>
      <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4519970#M571746</link>
      <description>&lt;P&gt;ISE 3.1 ( 3.001(000.518) a/k/a 3.1.0.518) is listed as vulnerable, and the current patch that is available is showing for ISE 2.4-3.0.&amp;nbsp; When will an ISE 3.1 patch become available?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also, a public service announcement:&amp;nbsp; the 3.0 patch doesn't work on ISE 3.1 in case you get impatient like me.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I attempted to install 2.4-3.0 patch on ISE 3.1, and the install worked, but ISE wouldn't start after the install with the following error:&lt;/P&gt;&lt;PRE&gt;PAN01/admin# application start ise
% Error: ISE Integrity Check Failed! One or more ISE program files appears to
%        be tampered with. Check system log for specific error(s).
% Application failed to start&lt;/PRE&gt;&lt;P&gt;ISE Started without issue after rollback of the patch.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 19:37:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4519970#M571746</guid>
      <dc:creator>pkarelis</dc:creator>
      <dc:date>2021-12-16T19:37:07Z</dc:date>
    </item>
    <item>
      <title>Re: CSCwa47133 - ISE 3.1 - Log4j Patch Availability?</title>
      <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520207#M571762</link>
      <description>&lt;P&gt;In fairness to Cisco, they did say that the patch was for ISE 2.4 through 3.0 - perhaps it's already fixed in ISE 3.1? Or they have not yet got around to fixing it. Or perhaps ISE 3.1 doesn't use this Apache library?&amp;nbsp; Who knows.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Nice try though &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 21:46:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520207#M571762</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2021-12-16T21:46:19Z</dc:date>
    </item>
    <item>
      <title>Re: CSCwa47133 - ISE 3.1 - Log4j Patch Availability?</title>
      <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520272#M571768</link>
      <description>&lt;P&gt;&lt;STRIKE&gt;Raise a TAC Case.&lt;/STRIKE&gt;&lt;/P&gt;
&lt;P&gt;Latest update to the&amp;nbsp;&lt;A href="https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-apache-log4j-qRuKNEbd" target="_self"&gt;Vulnerabilities in Apache Log4j Library Affecting Cisco Products&lt;/A&gt; security bulletin (update 1.19) has stated hotfix for ISE 3.1 to be available on 17 December 2021.&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 23:14:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520272#M571768</guid>
      <dc:creator>Leo Laohoo</dc:creator>
      <dc:date>2021-12-16T23:14:49Z</dc:date>
    </item>
    <item>
      <title>Re: CSCwa47133 - ISE 3.1 - Log4j Patch Availability?</title>
      <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520786#M571798</link>
      <description>&lt;P&gt;Getting pretty late in the day for the east coast here for a release of the patch for 3.1.&amp;nbsp; Is this still expected today or should we be watching over the weekend?&lt;/P&gt;</description>
      <pubDate>Fri, 17 Dec 2021 21:33:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520786#M571798</guid>
      <dc:creator>rpmoyer93</dc:creator>
      <dc:date>2021-12-17T21:33:40Z</dc:date>
    </item>
    <item>
      <title>Re: CSCwa47133 - ISE 3.1 - Log4j Patch Availability?</title>
      <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520819#M571799</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/807029"&gt;@rpmoyer93&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;Getting pretty late in the day for the east coast here for a release of the patch for 3.1.&amp;nbsp; Is this still expected today or should we be watching over the weekend?&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;ISE 3.1 Patch 1 is now available and can be found &lt;A href="https://software.cisco.com/download/home/283801620/type/283802505/release/log4j2-fix-3.1patch1" target="_self"&gt;HERE&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;ISE 3.1 Patch 1 Release Notes can be found &lt;A href="https://www.cisco.com/web/software/283802505/159629/README_Hotpatch_CSCwa47133_Log4j2-fix-3.1-Patch-1.txt" target="_self"&gt;HERE&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;NOTE&lt;/STRONG&gt;:&amp;nbsp; Applying ISE 3.1 Patch 1 will restart the services.&lt;/P&gt;</description>
      <pubDate>Sat, 18 Dec 2021 00:31:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4520819#M571799</guid>
      <dc:creator>Leo Laohoo</dc:creator>
      <dc:date>2021-12-18T00:31:05Z</dc:date>
    </item>
    <item>
      <title>Re: CSCwa47133 - ISE 3.1 - Log4j Patch Availability?</title>
      <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4524030#M571940</link>
      <description>&lt;P&gt;What order should I use to patch my ise deployment w/ the log4j fix. Admin nodes, then mnt, then psn, etc...?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Dec 2021 13:56:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4524030#M571940</guid>
      <dc:creator>Thompso75401</dc:creator>
      <dc:date>2021-12-27T13:56:32Z</dc:date>
    </item>
    <item>
      <title>Re: CSCwa47133 - ISE 3.1 - Log4j Patch Availability?</title>
      <link>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4524066#M571944</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;- The order is not important , and or also check this thread :&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;A href="https://community.cisco.com/t5/network-access-control/log4j-hotfix-cscwa47133-ise-distributed-environment/m-p/4521609#M571847" target="_blank"&gt;https://community.cisco.com/t5/network-access-control/log4j-hotfix-cscwa47133-ise-distributed-environment/m-p/4521609#M571847&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;M.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Dec 2021 16:11:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cscwa47133-ise-3-1-log4j-patch-availability/m-p/4524066#M571944</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2021-12-27T16:11:50Z</dc:date>
    </item>
  </channel>
</rss>

