<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IOS Client Supported TLS Versions in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ios-client-supported-tls-versions/m-p/5018395#M587339</link>
    <description>&lt;P&gt;IOS XE client connection attempts to our LDAPS and RADSEC servers are attempting to initiate SSLv3 or TLSv1 connections and failing due to SSLv3 and TLSv1 being disabled in our environment.&amp;nbsp; We cannot enable SSLv3 and TLSv1 per policy.&amp;nbsp; Is there a way to configure the LDAPS and RADSEC clients to establish TLSv1.2 or TLSv1.3 connections in IOS XE?&amp;nbsp; I have searched for documentation on this issue and cannot find anything.&lt;/P&gt;&lt;P&gt;Cisco IOS XE Software, Version 17.12.01&lt;/P&gt;</description>
    <pubDate>Wed, 14 Feb 2024 18:17:30 GMT</pubDate>
    <dc:creator>stevej3295</dc:creator>
    <dc:date>2024-02-14T18:17:30Z</dc:date>
    <item>
      <title>IOS Client Supported TLS Versions</title>
      <link>https://community.cisco.com/t5/network-access-control/ios-client-supported-tls-versions/m-p/5018395#M587339</link>
      <description>&lt;P&gt;IOS XE client connection attempts to our LDAPS and RADSEC servers are attempting to initiate SSLv3 or TLSv1 connections and failing due to SSLv3 and TLSv1 being disabled in our environment.&amp;nbsp; We cannot enable SSLv3 and TLSv1 per policy.&amp;nbsp; Is there a way to configure the LDAPS and RADSEC clients to establish TLSv1.2 or TLSv1.3 connections in IOS XE?&amp;nbsp; I have searched for documentation on this issue and cannot find anything.&lt;/P&gt;&lt;P&gt;Cisco IOS XE Software, Version 17.12.01&lt;/P&gt;</description>
      <pubDate>Wed, 14 Feb 2024 18:17:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ios-client-supported-tls-versions/m-p/5018395#M587339</guid>
      <dc:creator>stevej3295</dc:creator>
      <dc:date>2024-02-14T18:17:30Z</dc:date>
    </item>
    <item>
      <title>Re: IOS Client Supported TLS Versions</title>
      <link>https://community.cisco.com/t5/network-access-control/ios-client-supported-tls-versions/m-p/5018408#M587342</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1683055"&gt;@stevej3295&lt;/a&gt; RADSEC if using DTLS uses 1.2 &lt;A href="https://community.cisco.com/t5/networking-knowledge-base/configuring-radius-over-dtls-with-cat9k-and-ise-3-0/ta-p/4438427#toc-hId--239788900" target="_blank"&gt;https://community.cisco.com/t5/networking-knowledge-base/configuring-radius-over-dtls-with-cat9k-and-ise-3-0/ta-p/4438427#toc-hId--239788900&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;I am not sure about LDAPS either. If you can secure RADIUS can you not use this instead of LDAPS?&lt;/P&gt;</description>
      <pubDate>Wed, 14 Feb 2024 18:34:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ios-client-supported-tls-versions/m-p/5018408#M587342</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2024-02-14T18:34:47Z</dc:date>
    </item>
  </channel>
</rss>

