<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DOT1X WEBAUTH REDIRECT in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4740820#M578865</link>
    <description>&lt;P&gt;Please see our &lt;LI-MESSAGE title="ISE Secure Wired Access Prescriptive Deployment Guide" uid="3641515" url="https://community.cisco.com/t5/security-knowledge-base/ise-secure-wired-access-prescriptive-deployment-guide/m-p/3641515#U3641515" discussion_style_icon_css="lia-mention-container-editor-message lia-img-icon-tkb-thread lia-fa-icon lia-fa-tkb lia-fa-thread lia-fa"&gt;&lt;/LI-MESSAGE&gt; &amp;gt; &lt;STRONG&gt;Web Authentication/URL Redirection and ACLs&lt;/STRONG&gt; which has examples and explanations.&lt;/P&gt;</description>
    <pubDate>Fri, 16 Dec 2022 18:34:24 GMT</pubDate>
    <dc:creator>thomas</dc:creator>
    <dc:date>2022-12-16T18:34:24Z</dc:date>
    <item>
      <title>DOT1X WEBAUTH REDIRECT</title>
      <link>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4739681#M578842</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I understand that following configurations are required on a cisco switch to facilitate redirection for webauth:&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;ip http secure-server.&lt;/P&gt;&lt;P&gt;Is the ip http secure-server configuration absolutely necessary? I'm asking because we've enabled it as a result of which we've been bombarded with vulnerabilities owing to https certificates on the ios devices. I'm hoping that we can do without enabling https on the switches so that I shut it off and resolve the flagged issues.&lt;/P&gt;</description>
      <pubDate>Thu, 15 Dec 2022 13:13:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4739681#M578842</guid>
      <dc:creator>askalot</dc:creator>
      <dc:date>2022-12-15T13:13:26Z</dc:date>
    </item>
    <item>
      <title>Re: DOT1X WEBAUTH REDIRECT</title>
      <link>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4739684#M578843</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1194762"&gt;@askalot&lt;/a&gt; no it's not recommended to redirect using https - so configure "no ip http secure-server" to disable.&lt;/P&gt;</description>
      <pubDate>Thu, 15 Dec 2022 13:17:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4739684#M578843</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2022-12-15T13:17:12Z</dc:date>
    </item>
    <item>
      <title>Re: DOT1X WEBAUTH REDIRECT</title>
      <link>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4739836#M578847</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1194762"&gt;@askalot&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For this specific scenario, you might review the redirection flow that you want to implement , the&amp;nbsp; "ip http server " command in catalyst platforms is required for http traffic exclusively and the " ip http secure-server" for https , in any case if you have problems using https within ios , I would attempt/redesign&amp;nbsp; a flow to use only http for now while reviewing the vulnerabilities you mention.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 15 Dec 2022 17:28:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4739836#M578847</guid>
      <dc:creator>Rodrigo Diaz</dc:creator>
      <dc:date>2022-12-15T17:28:05Z</dc:date>
    </item>
    <item>
      <title>Re: DOT1X WEBAUTH REDIRECT</title>
      <link>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4740820#M578865</link>
      <description>&lt;P&gt;Please see our &lt;LI-MESSAGE title="ISE Secure Wired Access Prescriptive Deployment Guide" uid="3641515" url="https://community.cisco.com/t5/security-knowledge-base/ise-secure-wired-access-prescriptive-deployment-guide/m-p/3641515#U3641515" discussion_style_icon_css="lia-mention-container-editor-message lia-img-icon-tkb-thread lia-fa-icon lia-fa-tkb lia-fa-thread lia-fa"&gt;&lt;/LI-MESSAGE&gt; &amp;gt; &lt;STRONG&gt;Web Authentication/URL Redirection and ACLs&lt;/STRONG&gt; which has examples and explanations.&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 18:34:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/dot1x-webauth-redirect/m-p/4740820#M578865</guid>
      <dc:creator>thomas</dc:creator>
      <dc:date>2022-12-16T18:34:24Z</dc:date>
    </item>
  </channel>
</rss>

