<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco IME &amp;quot;Exception when initializing the SSL&amp;quot; in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621543#M65860</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Urfan;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; To answer your questions:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.&amp;nbsp; This is sometimes seen when the connection between the IME system and the sensor traverses a proxy server, or if IME is not run as an administrative user.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. IME can monitor any sensor to which it has constant connectivity, so it should be possible to monitor all four sensors from a single IME system.&amp;nbsp; Things to keep in mind:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;if there is a VPN connection between sites that is not always up, IME will not be able to retrieve events from the sensor causing gaps in event logs&lt;/LI&gt;&lt;LI&gt;if there is a network outage between the IME system and remote sensor, event retrieval will be interrupted&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 13 Jan 2011 12:17:41 GMT</pubDate>
    <dc:creator>Scott Fringer</dc:creator>
    <dc:date>2011-01-13T12:17:41Z</dc:date>
    <item>
      <title>Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621542#M65857</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have two questions that I would like some help with please.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to log onto our ASA-SSM-10 IPS sensor via the Cisco IME client and I get the following error "Exception when initializing the SSL"&lt;/P&gt;&lt;P&gt;I have tried generating new SSL keys on the ASA-SSM-10 with the tls generate-key command but this has not helped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can any one advise on how to resolve this problem?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The second question I had was is it possible to use the Cisco IME client to monitor remote sensors? In other words we have two sites and each site has a pair of SSM-10 sensors and we are currently managing them via the Cisco IME client on each site. Can we use either IME client on either site to see all four sensors?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance for your time&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 12:13:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621542#M65857</guid>
      <dc:creator>Urfan Khaliq</dc:creator>
      <dc:date>2019-03-10T12:13:45Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621543#M65860</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Urfan;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; To answer your questions:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.&amp;nbsp; This is sometimes seen when the connection between the IME system and the sensor traverses a proxy server, or if IME is not run as an administrative user.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. IME can monitor any sensor to which it has constant connectivity, so it should be possible to monitor all four sensors from a single IME system.&amp;nbsp; Things to keep in mind:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;if there is a VPN connection between sites that is not always up, IME will not be able to retrieve events from the sensor causing gaps in event logs&lt;/LI&gt;&lt;LI&gt;if there is a network outage between the IME system and remote sensor, event retrieval will be interrupted&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 12:17:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621543#M65860</guid>
      <dc:creator>Scott Fringer</dc:creator>
      <dc:date>2011-01-13T12:17:41Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621544#M65862</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the reply...issue one was resolved by re-installing the client and java&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With regards to issue 2...The is no vpn etc between the two sites and the link is deffinately up...When I try to add the opposite sites sensors to the IME client I get the error "IOException when try to get certificate: connect timed out"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas what this might be?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Urfan&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;EDIT: I have just noticed that the two sites are running different IPS software versions....one site is running 7.0(4)E4 on the IPS and the other site is running 6.0(6)E3.... Both sites are running 8.2(1)11 on the ASA's though...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 14:16:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621544#M65862</guid>
      <dc:creator>Urfan Khaliq</dc:creator>
      <dc:date>2011-01-13T14:16:30Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621545#M65864</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Urfan;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Can you connect to the remote sensor via IDM (the built-in GUI):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://"&gt;https://&lt;/A&gt;&lt;SPAN&gt;&lt;MGMT_IP_OF_REMOTE_SENSOR&gt;&lt;/MGMT_IP_OF_REMOTE_SENSOR&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Other things to check:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;remote sensor access-list allows IME station's IP address&lt;/LI&gt;&lt;LI&gt;there is no firewall policy denying access&lt;/LI&gt;&lt;LI&gt;there is no layer-3 ACL denying access&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 15:03:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621545#M65864</guid>
      <dc:creator>Scott Fringer</dc:creator>
      <dc:date>2011-01-13T15:03:33Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621546#M65865</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Scott thanks for the quick reply &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I cannot get to the sensor via https remote as you suggested and ive checekd the firewall and its deffo letting https through so not the firewall and not any network outage/connectivity either...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How can I check for remote sensor access-list allows IME station's IP address? I am currently logged onto the sensor via the local IME client...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Urfan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 15:18:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621546#M65865</guid>
      <dc:creator>Urfan Khaliq</dc:creator>
      <dc:date>2011-01-13T15:18:20Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621547#M65866</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Urfan;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Within IME navigate to:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Configuration&amp;gt;Sensor Setup&amp;gt;Allowed Hosts/Networks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; You will see a list of allowed networks/hosts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 15:29:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621547#M65866</guid>
      <dc:creator>Scott Fringer</dc:creator>
      <dc:date>2011-01-13T15:29:23Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621548#M65867</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes the networks are allowed so its not the sensor blocking it either &lt;SPAN __jive_emoticon_name="confused" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/confused.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could the difference in software between the two sites and their sensors play a part? Ive noticed that one site is running 6.0 and the other site is running the latest 7.0 on the sensors?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Urfan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 15:36:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621548#M65867</guid>
      <dc:creator>Urfan Khaliq</dc:creator>
      <dc:date>2011-01-13T15:36:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621549#M65869</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Urfan;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; What version of IME is being used?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; IME 7.0 can monitor IPS 6.0 sensors, but cannot perform configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; IME 6.0 cannot monitor/manage IPS 7.0 sensors.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Is there any sort of proxy server between the IME system and the remote sensors?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 15:42:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621549#M65869</guid>
      <dc:creator>Scott Fringer</dc:creator>
      <dc:date>2011-01-13T15:42:41Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621550#M65871</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are using IME 7.0.3 which is the latest version I believe. There is also no proxy in between&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Urfan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 15:44:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621550#M65871</guid>
      <dc:creator>Urfan Khaliq</dc:creator>
      <dc:date>2011-01-13T15:44:12Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621551#M65872</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Urfan;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; That you cannot connect using IDM (via the https method) indicates a connectivity issue between the IME system and the remtoe IPS.&amp;nbsp; You will need to troubleshoot the connection between the two devices.&amp;nbsp; You may need to perform packet captures at various points along the path to verify the expected traffic is passing each point.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; You can make use of the IPS CLI's &lt;SPAN style="font-family: andale mono,times;"&gt;packet display&lt;/SPAN&gt; command to monitor incoming connections from your remote system:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: andale mono,times;"&gt;sensor# packet display gigabitethernet0/0 expression port 443&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; You may want to include only the IP address of the IME system to eliminate the local IME connections from the output.&amp;nbsp; Use &lt;SPAN style="font-family: andale mono,times;"&gt;ctrl-c&lt;/SPAN&gt; or &lt;SPAN style="font-family: andale mono,times;"&gt;q&lt;/SPAN&gt; to exit the packet display.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 15:55:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621551#M65872</guid>
      <dc:creator>Scott Fringer</dc:creator>
      <dc:date>2011-01-13T15:55:26Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IME "Exception when initializing the SSL"</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621552#M65874</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for that....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I ran the command and &lt;STRONG&gt;then &lt;/STRONG&gt;I attempted to add the sensor that I ran the command &lt;STRONG&gt;on&lt;/STRONG&gt;, to the &lt;STRONG&gt;remote &lt;/STRONG&gt;IME client...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I deffo saw the entry in the command output&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;19:08:54.587530 IP 172.xx.xxx.xxx.56336 &amp;gt; 172.xx.xxx.xxx.443: S 2155760626:2155760626(0) win 8192 &lt;MSS 1460=""&gt;&lt;/MSS&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The first address is the host on site A which has the IME client and the second address is of the IPS sensor on site B that I ran the command on...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that makes sense but none of that output makes any sense to me....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From the looks of it the sensor is deffo seeing the connection on port 443 from the remote IME client but just for some reason it wont connect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Urfan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Jan 2011 19:35:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ime-quot-exception-when-initializing-the-ssl-quot/m-p/1621552#M65874</guid>
      <dc:creator>Urfan Khaliq</dc:creator>
      <dc:date>2011-01-13T19:35:30Z</dc:date>
    </item>
  </channel>
</rss>

