<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAC certificate error in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454427#M814779</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Laxman,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Verify that in the end role you have traffic allowed to the Exchange server. A CAS cert error should only pop up either when it's trying to authenticate or trying to block your traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Client does generate logs which I'd be glad to look at if you post them here. You can get to those by going to Start -&amp;gt; Programs and Cisco Log Packager.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH,&lt;/P&gt;&lt;P&gt;Faisal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 29 Aug 2010 16:58:57 GMT</pubDate>
    <dc:creator>Faisal Sehbai</dc:creator>
    <dc:date>2010-08-29T16:58:57Z</dc:date>
    <item>
      <title>NAC certificate error</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454424#M814767</link>
      <description>&lt;P&gt;hi all,&lt;/P&gt;&lt;P&gt;we are facing a certificate error problem on the in-band mode NAC. While user tries to communicate with ms outlook via in-band nac after the NAC process, user get the certificate error message from the proxy server, but when user clicks the view certificate option in-band cas certificate will be appear. but sometimes users can use MS outlook without error message.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FQDN of cas server is not bypassing from the proxy server. &lt;/P&gt;&lt;P&gt;please find the attached file for detail.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Laxman&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 12:03:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454424#M814767</guid>
      <dc:creator>blaxucisco</dc:creator>
      <dc:date>2020-02-21T12:03:41Z</dc:date>
    </item>
    <item>
      <title>Re: NAC certificate error</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454425#M814770</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Laxman,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not clear on the problem description here. You're saying that users while behind an IB NAC are getting certificate errors when they try to use Outlook?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If so, does that happen when they're authenticated? If it happens before authentication it's quite possible that NAC is hijacking the SSL traffic and trying to redirect it to it's login page.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you clarify your setup and the problem you're having a bit more clearly?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Faisal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Aug 2010 10:46:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454425#M814770</guid>
      <dc:creator>Faisal Sehbai</dc:creator>
      <dc:date>2010-08-25T10:46:39Z</dc:date>
    </item>
    <item>
      <title>Re: NAC certificate error</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454426#M814772</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Faisal,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is happening when user&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style=": ; mso-fareast-language: EN-US; mso-bidi-language: AR-SA; color: #000000; font-size: 11pt; sans-serif&amp;quot;: ; mso-ansi-language: EN-AU; mso-fareast-theme-font: minor-latin; font-family: Calibri; , &amp;quot;: ; mso-fareast-font-family: Calibri; Calibri&amp;quot;: ; "&gt;I get the following error only when connecting to Exchange while authenticated through NAC&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style=": ; mso-fareast-language: EN-US; mso-bidi-language: AR-SA; color: #000000; font-size: 11pt; sans-serif&amp;quot;: ; mso-ansi-language: EN-AU; mso-fareast-theme-font: minor-latin; font-family: Calibri; , &amp;quot;: ; mso-fareast-font-family: Calibri; Calibri&amp;quot;: ; "&gt;Next, does NAC client create any client-site logs?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style=": ; mso-fareast-language: EN-US; mso-bidi-language: AR-SA; color: #000000; font-size: 11pt; sans-serif&amp;quot;: ; mso-ansi-language: EN-AU; mso-fareast-theme-font: minor-latin; font-family: Calibri; , &amp;quot;: ; mso-fareast-font-family: Calibri; Calibri&amp;quot;: ; "&gt;Thank you&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style=": ; mso-fareast-language: EN-US; mso-bidi-language: AR-SA; color: #000000; font-size: 11pt; sans-serif&amp;quot;: ; mso-ansi-language: EN-AU; mso-fareast-theme-font: minor-latin; font-family: Calibri; , &amp;quot;: ; mso-fareast-font-family: Calibri; Calibri&amp;quot;: ; "&gt;Laxman&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 29 Aug 2010 08:49:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454426#M814772</guid>
      <dc:creator>blaxucisco</dc:creator>
      <dc:date>2010-08-29T08:49:48Z</dc:date>
    </item>
    <item>
      <title>Re: NAC certificate error</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454427#M814779</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Laxman,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Verify that in the end role you have traffic allowed to the Exchange server. A CAS cert error should only pop up either when it's trying to authenticate or trying to block your traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Client does generate logs which I'd be glad to look at if you post them here. You can get to those by going to Start -&amp;gt; Programs and Cisco Log Packager.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH,&lt;/P&gt;&lt;P&gt;Faisal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 29 Aug 2010 16:58:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454427#M814779</guid>
      <dc:creator>Faisal Sehbai</dc:creator>
      <dc:date>2010-08-29T16:58:57Z</dc:date>
    </item>
    <item>
      <title>Re: NAC certificate error</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454428#M814804</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Faisal,&lt;/P&gt;&lt;P&gt;Thank you for your response.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you please tell me what is the cisco log packager and how can I download it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you&lt;/P&gt;&lt;P&gt;Laxman&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Aug 2010 00:22:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454428#M814804</guid>
      <dc:creator>blaxucisco</dc:creator>
      <dc:date>2010-08-30T00:22:19Z</dc:date>
    </item>
    <item>
      <title>Re: NAC certificate error</title>
      <link>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454429#M814812</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Laxman,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If using the new version of CCA (4.6 and above) it's installed by default when you install the agent.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you're using CCA Agents below that version, you'll have to edit the registry and then collect the agent logs. Details on that are here:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/nac/appliance/release_notes/45/45rn.html#wp607061"&gt;http://www.cisco.com/en/US/docs/security/nac/appliance/release_notes/45/45rn.html#wp607061&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;Faisal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 30 Aug 2010 01:46:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-certificate-error/m-p/1454429#M814812</guid>
      <dc:creator>Faisal Sehbai</dc:creator>
      <dc:date>2010-08-30T01:46:09Z</dc:date>
    </item>
  </channel>
</rss>

