<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic IDSM-2 Error in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/idsm-2-error/m-p/619959#M92456</link>
    <description>&lt;P&gt;I keep receiving theses two errors over and over again in my logs "WebSession::SessionTask(#) TLS exception: handshake imcomplete"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"received fatal_alert: certificate unknown"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Currently I use IPS manager 2.2, and import the devices using TLS (cant import without).  I keep receiving these errors but don't know if it has to do with the ciscoworks box or not or how to correct them.  Thanks for the help  &lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 10:12:29 GMT</pubDate>
    <dc:creator>jbanker</dc:creator>
    <dc:date>2019-03-10T10:12:29Z</dc:date>
    <item>
      <title>IDSM-2 Error</title>
      <link>https://community.cisco.com/t5/network-security/idsm-2-error/m-p/619959#M92456</link>
      <description>&lt;P&gt;I keep receiving theses two errors over and over again in my logs "WebSession::SessionTask(#) TLS exception: handshake imcomplete"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"received fatal_alert: certificate unknown"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Currently I use IPS manager 2.2, and import the devices using TLS (cant import without).  I keep receiving these errors but don't know if it has to do with the ciscoworks box or not or how to correct them.  Thanks for the help  &lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 10:12:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm-2-error/m-p/619959#M92456</guid>
      <dc:creator>jbanker</dc:creator>
      <dc:date>2019-03-10T10:12:29Z</dc:date>
    </item>
    <item>
      <title>Re: IDSM-2 Error</title>
      <link>https://community.cisco.com/t5/network-security/idsm-2-error/m-p/619960#M92457</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;These errors generally happen when the sensor has generated a new certificate (like after a re-image, or a version 4.x to 5.0 upgrade).&lt;/P&gt;&lt;P&gt;There is a client still trying to connect to the sensor, but has the sensor's old certificate saved away.&lt;/P&gt;&lt;P&gt;This generaly happens with IEV or Security Monitor (within VMS).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How to track it down:&lt;/P&gt;&lt;P&gt;Create a service account.&lt;/P&gt;&lt;P&gt;Login with the service account.&lt;/P&gt;&lt;P&gt;Switch to user root (su -) using the same password as the service account.&lt;/P&gt;&lt;P&gt;Run "ifconfig -a" to determine the interface with the sensor's IP assigned to it.&lt;/P&gt;&lt;P&gt;Execute "tcpdump -i &lt;INTERFACE&gt;" &lt;/INTERFACE&gt;&lt;/P&gt;&lt;P&gt;Look for what IP Addresses are attempting to connect to port 443 (HTTPS) of the sensor.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Track down these IP Addresses and ensure the software running on these IPs has been updated with the sensor's new certificate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Sep 2006 14:36:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/idsm-2-error/m-p/619960#M92457</guid>
      <dc:creator>marcabal</dc:creator>
      <dc:date>2006-09-08T14:36:49Z</dc:date>
    </item>
  </channel>
</rss>

