<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Nessus tenable.sc scan in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/5309482#M597265</link>
    <description>&lt;P&gt;I would suggest the interface going err-disabled, check the interface to see the status of the SFP. Also check the send TX and RX values to see if they increment. Could be a failing SFP, or poorly terminated fibre or cable.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;</description>
    <pubDate>Tue, 15 Jul 2025 09:31:31 GMT</pubDate>
    <dc:creator>chrisdale</dc:creator>
    <dc:date>2025-07-15T09:31:31Z</dc:date>
    <item>
      <title>Nessus tenable.sc scan</title>
      <link>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573677#M573544</link>
      <description>&lt;P&gt;Hi All,&lt;BR /&gt;We have currently required to scan our cisco switches with Nessus tenable.sc scanner and every time the scan started the datalink port disabled on the switch. I looked up the error and I found that err-disabled and I have to manually run a shut and no shut command to open the port.&lt;/P&gt;&lt;P&gt;if there anyone has had the issue before please share.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Mar 2022 14:50:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573677#M573544</guid>
      <dc:creator>yaredo70</dc:creator>
      <dc:date>2022-03-18T14:50:50Z</dc:date>
    </item>
    <item>
      <title>Nessus tenable.sc scan</title>
      <link>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573698#M573546</link>
      <description>&lt;P&gt;&lt;SPAN&gt;datalink port disabled on the switch. I looked up the error and I found that err-disabled and I have to manually run a shut and no shut command to open the port.&amp;nbsp; Here is some info that should help:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-You can enable port sec error autorecovery to eliminate the need to manually shut/no shut ports in order to re-enable.&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;--&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;View port sec status:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;#show port-security interface &amp;lt;int&amp;gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;--&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;View ports in err-disabled:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;#show interfaces status err-disabled&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;--&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Enable the autorecovery feature 30 seconds after a port security violation:&lt;/P&gt;
&lt;P&gt;#errdisable recovery cause psecure-violation&lt;BR /&gt;#errdisable recovery interval 30&lt;/P&gt;
&lt;P&gt;NOTE:&amp;nbsp;&lt;SPAN&gt;Autorecovery default timer is 300 seconds.&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Lastly, I would discuss with the scan team to determine if there is a better way to ensure the NADs are hardened/secure.&amp;nbsp; Access ports going into errdisabled is a service interruption and something I would assume most want to avoid.&amp;nbsp; HTH!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Mar 2022 15:15:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573698#M573546</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2022-03-18T15:15:59Z</dc:date>
    </item>
    <item>
      <title>Re: Nessus tenable.sc scan</title>
      <link>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573712#M573547</link>
      <description>&lt;P&gt;Hi Mike,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your reply. I don't think there is a port security configuration on the switch, I will look up the config files if there is any port security configured. My question is how We can prevent that from happening? This happened only after the scan started.&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;</description>
      <pubDate>Fri, 18 Mar 2022 15:28:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573712#M573547</guid>
      <dc:creator>yaredo70</dc:creator>
      <dc:date>2022-03-18T15:28:02Z</dc:date>
    </item>
    <item>
      <title>Re: Nessus tenable.sc scan</title>
      <link>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573727#M573548</link>
      <description>&lt;P&gt;first check the error-disabled reason. then you can take actions to that by disabling err-disable only for given reason. you can check logs or use console monitoring to get the reason easily.&lt;/P&gt;</description>
      <pubDate>Fri, 18 Mar 2022 15:40:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4573727#M573548</guid>
      <dc:creator>Kasun Bandara</dc:creator>
      <dc:date>2022-03-18T15:40:50Z</dc:date>
    </item>
    <item>
      <title>Re: Nessus tenable.sc scan</title>
      <link>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4575085#M573566</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have checked the error and I found this&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;err-disabled&amp;nbsp; reason - udld&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;how do I solve it?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks?&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2022 14:07:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/4575085#M573566</guid>
      <dc:creator>yaredo70</dc:creator>
      <dc:date>2022-03-21T14:07:31Z</dc:date>
    </item>
    <item>
      <title>Re: Nessus tenable.sc scan</title>
      <link>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/5309482#M597265</link>
      <description>&lt;P&gt;I would suggest the interface going err-disabled, check the interface to see the status of the SFP. Also check the send TX and RX values to see if they increment. Could be a failing SFP, or poorly terminated fibre or cable.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH&lt;/P&gt;</description>
      <pubDate>Tue, 15 Jul 2025 09:31:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/nessus-tenable-sc-scan/m-p/5309482#M597265</guid>
      <dc:creator>chrisdale</dc:creator>
      <dc:date>2025-07-15T09:31:31Z</dc:date>
    </item>
  </channel>
</rss>

