<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic You must have a root in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057288#M441207</link>
    <description>&lt;P&gt;You must have a root certificate or subordinate CA certificate issued to the WSA itself - i.e. one that can decrypt and resign - for the WSA to inspect https traffic.&lt;/P&gt;
&lt;P&gt;See this technote:&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/web-security-appliance/117792-technote-wsa-00.html&lt;/P&gt;</description>
    <pubDate>Fri, 26 May 2017 05:17:08 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2017-05-26T05:17:08Z</dc:date>
    <item>
      <title>Cisco WSA Virtual 45-day demo license limitations?</title>
      <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057286#M441192</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have downloaded the Cisco WSA virtual image &lt;SPAN style="color: #0000ff;"&gt;&lt;STRONG&gt;coeus-9-1-2-022-S000V.qcow2&lt;/STRONG&gt;&lt;/SPAN&gt; and have installed the 45-day demo license.&lt;/P&gt;
&lt;P&gt;I would like to ask about something that I noticed because I can't make the WSA work:&lt;/P&gt;
&lt;P&gt;I have a PC with IP 10.0.1.10/24 and the management port IP of WSA is 10.0.1.1/24&lt;/P&gt;
&lt;P&gt;I see "&lt;SPAN style="color: #ff0000;"&gt;&lt;STRONG&gt;Temporary Redirect&lt;/STRONG&gt;&lt;/SPAN&gt;" message when the PC is trying to access an HTTP page (for example: &lt;A href="http://www.cisco.com" target="_blank"&gt;www.cisco.com&lt;/A&gt;)&lt;IMG src="https://community.cisco.com/legacyfs/online/media/http_temp_redirect.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;When I try from the browser to access an HTTPs page I see "&lt;SPAN style="color: #ff0000;"&gt;&lt;STRONG&gt;Unsupported method ('CONNECT')&lt;/STRONG&gt;&lt;/SPAN&gt;":&lt;IMG src="https://community.cisco.com/legacyfs/online/media/https_unsupported_method_connect.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have setup the proxy like this on PC's browser:&lt;IMG src="https://community.cisco.com/legacyfs/online/media/proxy_settings.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;On the WSA I have the following feature Keys:&lt;IMG src="https://community.cisco.com/legacyfs/online/media/feature_keys.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The Web Proxy settings:&lt;IMG src="https://community.cisco.com/legacyfs/online/media/web_proxy_settings.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The HTTPs proxy settings:&lt;IMG src="https://community.cisco.com/legacyfs/online/media/https_proxy_settings.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The interface configuration: (The P1 is connected to the internet)&lt;IMG src="https://community.cisco.com/legacyfs/online/media/interface_config.png" class="migrated-markup-image" /&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;And the output of the version command:&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;ironport2.example.com&amp;gt; version&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Current Version&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;===============&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Product: Cisco S000V Web Security Virtual Appliance&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Model: S000V&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Version: 10.1.1-234&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Build Date: 2017-05-03&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Install Date: 2017-05-25 06:49:56&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Serial #: 919414406E95490495F1-7331443186F2&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;BIOS: Bochs&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;CPUs: 1 expected, 2 allocated&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Memory: 4096 MB expected, 4096 MB allocated&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;RAID: NA&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;RAID Status: Unknown&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;RAID Type: NA&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;BMC: NA&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Cisco DVS Engine: 1.0 (Never Updated)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Cisco DVS Malware User Agent Rules: 0.554 (Never Updated)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Cisco DVS Object Type Rules: 0.554 (Never Updated)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Cisco Trusted Root Certificate Bundle: 1.4 (Thu May 25 06:53:46 2017)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Cisco Certificate Blacklist: 1.3 (Thu May 25 06:53:46 2017)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;L4 Traffic Monitor Anti-Malware Rules: 1495689641 (Thu May 25 06:53:47 2017)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Advanced Malware Protection - Cloud Configuration and Settings: 1.0 (Never&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Updated)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Advanced Malware Protection - Engine Definition: 1.0 (Never Updated)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;Cisco Internal Certificates - Advanced Malware Protection: 1.0.0-101 (Thu May&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN style="font-size: 10pt; font-family: courier new,courier,monospace;"&gt;25 06:53:46 2017)&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Is this some limitation of Cisco Virtual WSA? Or some limitation of the demo license? Because I cannot make it work at all like this.&lt;/P&gt;
&lt;P&gt;Thank you very much in advance,&lt;/P&gt;
&lt;P&gt;Apostolos&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 14:05:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057286#M441192</guid>
      <dc:creator>ak085b</dc:creator>
      <dc:date>2020-02-21T14:05:03Z</dc:date>
    </item>
    <item>
      <title>Have you told the WSA to act</title>
      <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057287#M441202</link>
      <description>&lt;P&gt;Have you told the WSA to act as a proxy on port 8080? &amp;nbsp;I think it defaults to using port 3128.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportforums.cisco.com/document/12162701/wsa-training-series-how-configure-web-proxy-cisco-web-security-appliance"&gt;https://supportforums.cisco.com/document/12162701/wsa-training-series-how-configure-web-proxy-cisco-web-security-appliance&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2017 04:06:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057287#M441202</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2017-05-26T04:06:32Z</dc:date>
    </item>
    <item>
      <title>You must have a root</title>
      <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057288#M441207</link>
      <description>&lt;P&gt;You must have a root certificate or subordinate CA certificate issued to the WSA itself - i.e. one that can decrypt and resign - for the WSA to inspect https traffic.&lt;/P&gt;
&lt;P&gt;See this technote:&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/web-security-appliance/117792-technote-wsa-00.html&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2017 05:17:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057288#M441207</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-05-26T05:17:08Z</dc:date>
    </item>
    <item>
      <title>Hello Philip,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057289#M441212</link>
      <description>&lt;P&gt;Hello Philip,&lt;/P&gt;
&lt;P&gt;Thank you very much for your reply. Well, it defaults to using ports 80 and 3128.&lt;/P&gt;
&lt;P&gt;I changed the browser proxy settings to port 80 and it worked like a charm!&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thank you!&lt;/P&gt;</description>
      <pubDate>Sun, 28 May 2017 08:12:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057289#M441212</guid>
      <dc:creator>ak085b</dc:creator>
      <dc:date>2017-05-28T08:12:32Z</dc:date>
    </item>
    <item>
      <title>Hello Martin, thanks for the</title>
      <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057290#M441219</link>
      <description>&lt;P&gt;Hello Marvin, thanks for the reply.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I created a certificate and a key and then uploaded them to the WSA&lt;/P&gt;
&lt;P&gt;Then, I downloaded the cert.pem file, changed it to .cer file and imported that into the Firefox trusted certificates&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I had to change the browser proxy settings for SSL to &amp;lt;WSA IP&amp;gt;:80 and it worked.&lt;/P&gt;
&lt;P&gt;Any idea why it doesn't work with &amp;lt;WSA IP&amp;gt;:443?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thank you very much!&lt;/P&gt;</description>
      <pubDate>Sun, 28 May 2017 11:37:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057290#M441219</guid>
      <dc:creator>ak085b</dc:creator>
      <dc:date>2017-05-28T11:37:03Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057291#M441224</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I'm also planning to get 45 days license for virtual WSA, ESA, and NGFW, but want to understand better how it works.&lt;/P&gt;
&lt;P&gt;Is it simply explires after 45 days after activation or after 45 days of total appliance uptime?&lt;/P&gt;
&lt;P&gt;When the license expires, it can be extended or reapplied after appliance redeploy? Or I should request a new one? If so, what is limit of demo licenses that can be requested from cisco partner account?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks in advance for any responce or link to explanation&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 18 Jun 2017 15:49:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057291#M441224</guid>
      <dc:creator />
      <dc:date>2017-06-18T15:49:08Z</dc:date>
    </item>
    <item>
      <title>The licenses expire 45 days</title>
      <link>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057292#M441230</link>
      <description>&lt;P&gt;The licenses expire 45 days after activation.&lt;/P&gt;
&lt;P&gt;Cisco doesn't set a hard limit on the number of partner lab or demo licenses you may acquire. (I would imagine they might push back if you are requesting a large number of them without selling the product.)&lt;/P&gt;</description>
      <pubDate>Mon, 19 Jun 2017 05:48:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-wsa-virtual-45-day-demo-license-limitations/m-p/3057292#M441230</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-06-19T05:48:36Z</dc:date>
    </item>
  </channel>
</rss>

