<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAC certificate in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nac-certificate/m-p/1526208#M737602</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The clients will communicate with the CAM if they need to download the agent for example and yes, in this situations you also need to trust the CAM cert ortherwise the security warning will show up.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is good practice to have signed certs on the CAM and CAS and usually from the same CA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, in resume, i would say yes, if you do not want security warnings, then you should install also a cert on the CAM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH,&lt;BR /&gt;Tiago&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV class="jive-rendered-content"&gt;&lt;DIV class="jive-rendered-content"&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;If&amp;nbsp; this helps you and/or&amp;nbsp; answers your question please mark the question&amp;nbsp; as "answered" and/or rate it, so other users can easily find it.&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 16 Oct 2010 08:19:01 GMT</pubDate>
    <dc:creator>Tiago Antunes</dc:creator>
    <dc:date>2010-10-16T08:19:01Z</dc:date>
    <item>
      <title>NAC certificate</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate/m-p/1526207#M737567</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;we ordered certificate for CAS only based on documentation. when connect from wired network, it shows CAS IP address on IE and doesn't display warning page and everything works fine. but when connect from wireless, it redirect to CAM IP address and obviously there is no signed certificate for CAM and warning page is shown up. do we need to order certificate for CAM as well?&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Alex&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 12:07:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate/m-p/1526207#M737567</guid>
      <dc:creator>alex goshtaei</dc:creator>
      <dc:date>2020-02-21T12:07:15Z</dc:date>
    </item>
    <item>
      <title>Re: NAC certificate</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate/m-p/1526208#M737602</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The clients will communicate with the CAM if they need to download the agent for example and yes, in this situations you also need to trust the CAM cert ortherwise the security warning will show up.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is good practice to have signed certs on the CAM and CAS and usually from the same CA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, in resume, i would say yes, if you do not want security warnings, then you should install also a cert on the CAM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH,&lt;BR /&gt;Tiago&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV class="jive-rendered-content"&gt;&lt;DIV class="jive-rendered-content"&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;If&amp;nbsp; this helps you and/or&amp;nbsp; answers your question please mark the question&amp;nbsp; as "answered" and/or rate it, so other users can easily find it.&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 16 Oct 2010 08:19:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate/m-p/1526208#M737602</guid>
      <dc:creator>Tiago Antunes</dc:creator>
      <dc:date>2010-10-16T08:19:01Z</dc:date>
    </item>
    <item>
      <title>Re: NAC certificate</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate/m-p/1526209#M737637</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Alex,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are these two different CASs or the same one you're pointing to?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Faisal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 17 Oct 2010 04:18:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate/m-p/1526209#M737637</guid>
      <dc:creator>Faisal Sehbai</dc:creator>
      <dc:date>2010-10-17T04:18:35Z</dc:date>
    </item>
  </channel>
</rss>

