<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SDA Trustsec Issues in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719444#M578164</link>
    <description>&lt;P&gt;TLS 1.0 is required for TrustSec&lt;/P&gt;</description>
    <pubDate>Thu, 10 Nov 2022 17:48:25 GMT</pubDate>
    <dc:creator>ahollifield</dc:creator>
    <dc:date>2022-11-10T17:48:25Z</dc:date>
    <item>
      <title>SDA Trustsec Issues</title>
      <link>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719441#M578163</link>
      <description>&lt;P&gt;Hello!&lt;/P&gt;
&lt;P&gt;I'm setting up a new SDA environment for a customer. They have DNAC 2.3.3.5, ISE 3.1p3, 9500 borders running 17.6.4 and&amp;nbsp;WS-C3650-12X48FD edge switches running 16.12.3s (currently only 2x test edge switches).&lt;/P&gt;
&lt;P&gt;I noticed in the ISE RADIUS live logs there are multiple CTS errors for both switches (see attached).&lt;/P&gt;
&lt;P&gt;Looks like the switch is trying to communicate with ISE using an unsupported SSL/TLS version which is causing the handshake to fail?&lt;/P&gt;
&lt;P&gt;Any idea where I go from here?&lt;/P&gt;
&lt;P&gt;I checked Settings &amp;gt; Security settings and these are set to (what I guess are) their defaults: TLS 1.0 and SHA1 ciphers disabled and everything else enabled.&lt;/P&gt;
&lt;P&gt;Many thanks in advance!&lt;/P&gt;
&lt;P&gt;Matt.&lt;/P&gt;</description>
      <pubDate>Thu, 10 Nov 2022 17:45:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719441#M578163</guid>
      <dc:creator>mattw</dc:creator>
      <dc:date>2022-11-10T17:45:50Z</dc:date>
    </item>
    <item>
      <title>Re: SDA Trustsec Issues</title>
      <link>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719444#M578164</link>
      <description>&lt;P&gt;TLS 1.0 is required for TrustSec&lt;/P&gt;</description>
      <pubDate>Thu, 10 Nov 2022 17:48:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719444#M578164</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2022-11-10T17:48:25Z</dc:date>
    </item>
    <item>
      <title>Re: SDA Trustsec Issues</title>
      <link>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719587#M578170</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/199513"&gt;@ahollifield&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;Thank you for confirming. I did end up enabling TLS 1.0 which kicked it into life. Seems bonkers in today's day and age??&lt;/P&gt;</description>
      <pubDate>Thu, 10 Nov 2022 23:12:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719587#M578170</guid>
      <dc:creator>mattw</dc:creator>
      <dc:date>2022-11-10T23:12:45Z</dc:date>
    </item>
    <item>
      <title>Re: SDA Trustsec Issues</title>
      <link>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719799#M578179</link>
      <description>&lt;P&gt;Agree, it's a really common complaint among my customers.&lt;/P&gt;</description>
      <pubDate>Fri, 11 Nov 2022 13:14:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/sda-trustsec-issues/m-p/4719799#M578179</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2022-11-11T13:14:55Z</dc:date>
    </item>
  </channel>
</rss>

