<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Great Answer Panagioti, it in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/3777284#M615879</link>
    <description>&lt;P&gt;Where is the answer? I dont see any comments from&amp;nbsp;&lt;SPAN&gt;Panagioti&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 10 Jan 2019 22:08:25 GMT</pubDate>
    <dc:creator>Adam Hinchliff</dc:creator>
    <dc:date>2019-01-10T22:08:25Z</dc:date>
    <item>
      <title>Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566542#M615868</link>
      <description>&lt;P&gt;Does my device not support enough encryption to get ASDM/SSL/HTTP working?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First time I've ever seen this...:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;!--[if gte mso 10]&gt;
&lt;style&gt;
 /* Style Definitions */
 table.MsoNormalTable
	{mso-style-name:"Table Normal";
	mso-tstyle-rowband-size:0;
	mso-tstyle-colband-size:0;
	mso-style-noshow:yes;
	mso-style-priority:99;
	mso-style-qformat:yes;
	mso-style-parent:"";
	mso-padding-alt:0in 5.4pt 0in 5.4pt;
	mso-para-margin:0in;
	mso-para-margin-bottom:.0001pt;
	mso-pagination:widow-orphan;
	font-size:11.0pt;
	font-family:"Calibri","sans-serif";
	mso-ascii-font-family:Calibri;
	mso-ascii-theme-font:minor-latin;
	mso-fareast-font-family:"Times New Roman";
	mso-fareast-theme-font:minor-fareast;
	mso-hansi-font-family:Calibri;
	mso-hansi-theme-font:minor-latin;
	mso-bidi-font-family:"Times New Roman";
	mso-bidi-theme-font:minor-bidi;}
&lt;/style&gt;
&lt;![endif]--&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;%ASA-7-609001: Built local-host inside:192.168.1.10&lt;BR /&gt; %ASA-7-609001: Built local-host identity:192.168.1.1&lt;BR /&gt; %ASA-6-302013: Built inbound TCP connection 13 for inside:&lt;A href="http://192.168.1.10/61194" target="_blank"&gt;192.168.1.10/61194&lt;/A&gt; (&lt;A href="http://192.168.1.10/61194" target="_blank"&gt;192.168.1.10/61194&lt;/A&gt;) to identity:&lt;A href="http://192.168.1.1/443" target="_blank"&gt;192.168.1.1/443&lt;/A&gt; (&lt;A href="http://192.168.1.1/443" target="_blank"&gt;192.168.1.1/443&lt;/A&gt;)&lt;BR /&gt; %ASA-6-725001: Starting SSL handshake with client inside:&lt;A href="http://192.168.1.10/61194" target="_blank"&gt;192.168.1.10/61194&lt;/A&gt; for TLSv1 session.&lt;BR /&gt; %ASA-7-725010: Device supports the following 1 cipher(s).&lt;BR /&gt; %ASA-7-725011: Cipher[1] : DES-CBC-SHA&lt;BR /&gt; %ASA-7-725008: SSL client inside:&lt;A href="http://192.168.1.10/61194" target="_blank"&gt;192.168.1.10/61194&lt;/A&gt; proposes the following 11 cipher(s).&lt;BR /&gt; %ASA-7-725011: Cipher[1] : DHE-DSS-AES256-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[2] : AES256-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[3] : DHE-RSA-AES256-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[4] : DHE-RSA-AES128-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[5] : DHE-DSS-AES128-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[6] : RC4-MD5&lt;BR /&gt; %ASA-7-725011: Cipher[7] : RC4-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[8] : AES128-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[9] : EDH-RSA-DES-CBC3-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[10] : EDH-DSS-DES-CBC3-SHA&lt;BR /&gt; %ASA-7-725011: Cipher[11] : DES-CBC3-SHA&lt;BR /&gt; %ASA-7-725014: SSL lib error. Function: SSL3_GET_CLIENT_HELLO Reason: no shared cipher&lt;BR /&gt; %ASA-6-302014: Teardown TCP connection 13 for inside:&lt;A href="http://192.168.1.10/61194" target="_blank"&gt;192.168.1.10/61194&lt;/A&gt; to identity:&lt;A href="http://192.168.1.1/443" target="_blank"&gt;192.168.1.1/443&lt;/A&gt; duration 0:00:00 bytes 7 TCP Reset by appliance&lt;BR /&gt; %ASA-7-609002: Teardown local-host inside:192.168.1.10 duration 0:00:00&lt;BR /&gt; %ASA-7-609002: Teardown local-host identity:192.168.1.1 duration 0:00:00&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:12:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566542#M615868</guid>
      <dc:creator>davebornack</dc:creator>
      <dc:date>2019-03-11T19:12:54Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566543#M615869</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have "ssl encryption" command on the ASA that sets ciphers that are not matched with the client proposed ciphers?&lt;/P&gt;&lt;P&gt;Can you check using the ssl command?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Nov 2010 17:13:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566543#M615869</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-11-22T17:13:40Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566544#M615870</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It responds with :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;XXX algorithms require a VPN-3DES-AES activation key.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've tried like.. 8 of the ones it says my client is proposing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I shouldn't need a special license to get ASDM working out of the box..&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Nov 2010 17:20:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566544#M615870</guid>
      <dc:creator>davebornack</dc:creator>
      <dc:date>2010-11-22T17:20:30Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566545#M615871</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hmm, do you have a 3DES license on your ASA, or DES? "sh ver" should show you that.&lt;/P&gt;&lt;P&gt;If you have DES it will not do the algorithms for SSL encryption etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PL&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Nov 2010 17:35:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566545#M615871</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-11-22T17:35:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566546#M615872</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"This platform has a base license"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So this means that I can't even run ASDM with a base license?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Nov 2010 17:41:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566546#M615872</guid>
      <dc:creator>davebornack</dc:creator>
      <dc:date>2010-11-22T17:41:03Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566547#M615873</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is better you get a 3DES license for your ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Otherwise, one way to get it working would be to change the cipher suites being sent by the client's browser. I am not really sure of how to do that but i am pretty sure google will give you good results.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me now how it goes!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Prapanch&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Nov 2010 01:14:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566547#M615873</guid>
      <dc:creator>praprama</dc:creator>
      <dc:date>2010-11-23T01:14:14Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566548#M615874</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;You tried with different browsers and ssl settings?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Nov 2010 10:11:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566548#M615874</guid>
      <dc:creator>cadet alain</dc:creator>
      <dc:date>2010-11-23T10:11:23Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566549#M615875</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I found this post, but didn't see the answer. I did find the answer elsewhere and wanted to update this post in case someone else has this issue. I had to enable a cipher that was compatible with my browser using the below command on the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ssl encryption aes256-sha1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps someone find the answer quicker.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mark&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 28 Mar 2012 14:33:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566549#M615875</guid>
      <dc:creator>MARK BAKER</dc:creator>
      <dc:date>2012-03-28T14:33:59Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566550#M615876</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have the same issue. It is helpful for me&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Oct 2013 10:27:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566550#M615876</guid>
      <dc:creator>phuoctrung</dc:creator>
      <dc:date>2013-10-02T10:27:59Z</dc:date>
    </item>
    <item>
      <title>Great Answer Panagioti, it</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566551#M615877</link>
      <description>&lt;P&gt;Great Answer Panagioti, it worked for me.. the answer was in front of our eyes!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;%ASA-6-725001: Starting SSL handshake with client inside:xx.xx.xx.xx/59308 for TLS session.&lt;BR /&gt;%ASA-7-725010: Device supports the following 3 cipher(s).&lt;BR /&gt;%ASA-7-725011: Cipher[1] : AES256-SHA&lt;BR /&gt;%ASA-7-725011: Cipher[2] : DHE-RSA-AES128-SHA&lt;BR /&gt;%ASA-7-725011: Cipher[3] : DHE-RSA-AES256-SHA&lt;BR /&gt;%ASA-7-725008: SSL client inside:10.10.8.25/59308 proposes the following 2 cipher(s).&lt;BR /&gt;%ASA-7-725011: Cipher[1] : AES128-SHA&lt;BR /&gt;%ASA-7-725011: Cipher[2] : DES-CBC3-SHA&lt;BR /&gt;%ASA-7-725014: SSL lib error. Function: SSL3_GET_CLIENT_HELLO Reason: no shared cipher&lt;/P&gt;&lt;P&gt;Thank you for pointing this!&lt;/P&gt;</description>
      <pubDate>Fri, 16 Oct 2015 11:40:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566551#M615877</guid>
      <dc:creator>dchrysovergis</dc:creator>
      <dc:date>2015-10-16T11:40:16Z</dc:date>
    </item>
    <item>
      <title>It was helpful, thanks!</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566552#M615878</link>
      <description>&lt;P&gt;It was helpful, thanks!&lt;/P&gt;
&lt;P&gt;I had the same problem which I was fighting with last couple days. I had to format and erase my flash during flash replacement, and ASA lost &amp;nbsp;activation code and all ciphers. After reading your post I realized what is wrong, restored the activation key and applied ciphers to SSL.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks again!&lt;/P&gt;
&lt;P&gt;--&lt;/P&gt;
&lt;P&gt;Igor&lt;/P&gt;</description>
      <pubDate>Fri, 11 Mar 2016 16:05:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/1566552#M615878</guid>
      <dc:creator>f9is</dc:creator>
      <dc:date>2016-03-11T16:05:57Z</dc:date>
    </item>
    <item>
      <title>Re: Great Answer Panagioti, it</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/3777284#M615879</link>
      <description>&lt;P&gt;Where is the answer? I dont see any comments from&amp;nbsp;&lt;SPAN&gt;Panagioti&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Jan 2019 22:08:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/3777284#M615879</guid>
      <dc:creator>Adam Hinchliff</dc:creator>
      <dc:date>2019-01-10T22:08:25Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/3939602#M615880</link>
      <description>Thanks...this was very helpful</description>
      <pubDate>Sat, 12 Oct 2019 10:54:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/3939602#M615880</guid>
      <dc:creator>gnwanma2012</dc:creator>
      <dc:date>2019-10-12T10:54:47Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/4180419#M1075571</link>
      <description>&lt;P&gt;THIS worked for me:&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;ssl encryption aes256-sha1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thank you so much!!!!1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 08 Nov 2020 02:27:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/4180419#M1075571</guid>
      <dc:creator>tproeber</dc:creator>
      <dc:date>2020-11-08T02:27:13Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ASA 5505 SSL/HTTPS/ASDM Won't work, Cipher fail</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/4924636#M1104288</link>
      <description>&lt;P&gt;firmware version 9.2 it doesn't support&amp;nbsp;tlsv1.2&lt;/P&gt;&lt;P&gt;firmware version 9.4 on wards it support&lt;/P&gt;&lt;P&gt;QRCS-DC# sh run all ssl&lt;BR /&gt;ssl server-version any&lt;BR /&gt;ssl client-version any&lt;BR /&gt;ssl encryption rc4-sha1 dhe-aes128-sha1 dhe-aes256-sha1 aes128-sha1 aes256-sha1 3des-sha1&lt;BR /&gt;ssl certificate-authentication fca-timeout 2&lt;/P&gt;&lt;P&gt;version 9.4&lt;/P&gt;&lt;P&gt;QRCS-DC# sh run all ssl&lt;BR /&gt;ssl server-version tlsv1&lt;BR /&gt;ssl client-version tlsv1&lt;BR /&gt;ssl cipher default medium&lt;BR /&gt;ssl cipher tlsv1 medium&lt;BR /&gt;ssl cipher tlsv1.1 medium&lt;BR /&gt;ssl cipher tlsv1.2 medium&lt;BR /&gt;ssl cipher dtlsv1 medium&lt;BR /&gt;ssl dh-group group2&lt;BR /&gt;ssl ecdh-group group19&lt;BR /&gt;ssl certificate-authentication fca-timeout 2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 17 Sep 2023 09:59:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-5505-ssl-https-asdm-won-t-work-cipher-fail/m-p/4924636#M1104288</guid>
      <dc:creator>Fahadk</dc:creator>
      <dc:date>2023-09-17T09:59:20Z</dc:date>
    </item>
  </channel>
</rss>

