<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco Firepower User Agent support for TLSv1.2 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3996183#M934674</link>
    <description>&lt;P&gt;User Agent to FMC should support strong ciphers.&lt;/P&gt;
&lt;P&gt;Reference:&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firesight/user-agent/24/config-guide/Firepower-User-Agent-Configuration-Guide-v2-4/ConfigAgent.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firesight/user-agent/24/config-guide/Firepower-User-Agent-Configuration-Guide-v2-4/ConfigAgent.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Is your User Agent running on the DC itself?&lt;/P&gt;</description>
    <pubDate>Tue, 10 Dec 2019 03:11:10 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2019-12-10T03:11:10Z</dc:date>
    <item>
      <title>Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3995951#M934673</link>
      <description>&lt;P&gt;Can someone please confirm if the Firepower user agent 2.4 supports TLSV1.2? I disabled TLSV1.0 in my Windows Domain Controller 2016 and I'm not getting any mappings anymore, thank you.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 17:45:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3995951#M934673</guid>
      <dc:creator>borman.bravo</dc:creator>
      <dc:date>2020-02-21T17:45:13Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3996183#M934674</link>
      <description>&lt;P&gt;User Agent to FMC should support strong ciphers.&lt;/P&gt;
&lt;P&gt;Reference:&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firesight/user-agent/24/config-guide/Firepower-User-Agent-Configuration-Guide-v2-4/ConfigAgent.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firesight/user-agent/24/config-guide/Firepower-User-Agent-Configuration-Guide-v2-4/ConfigAgent.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Is your User Agent running on the DC itself?&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2019 03:11:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3996183#M934674</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-12-10T03:11:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3996521#M934675</link>
      <description>Hi Marvin, yes it is running in the domain controllers, thanks</description>
      <pubDate>Tue, 10 Dec 2019 14:32:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3996521#M934675</guid>
      <dc:creator>borman.bravo</dc:creator>
      <dc:date>2019-12-10T14:32:28Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3996904#M934676</link>
      <description>&lt;P&gt;I would recommend reaching out to Cisco TAC to have this verified but the last time I checked the User Agent only supported TLSv1.0.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 11 Dec 2019 03:13:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/3996904#M934676</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2019-12-11T03:13:03Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4007148#M934677</link>
      <description>&lt;P&gt;Thank you for your reply and Happy New Year!&lt;/P&gt;&lt;P&gt;The article you referred me to has no mention of TLS v1.2 support for User Agent which is the question I had, would you know if this is supported in 6.4?&lt;/P&gt;</description>
      <pubDate>Mon, 06 Jan 2020 19:17:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4007148#M934677</guid>
      <dc:creator>borman.bravo</dc:creator>
      <dc:date>2020-01-06T19:17:04Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4063444#M1069072</link>
      <description>&lt;P&gt;I'm seeing a similar issue.&amp;nbsp; According to this, no.&amp;nbsp;&amp;nbsp;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve30062/?rfs=iqvred" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve30062/?rfs=iqvred&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm flabbergasted by the suggested&amp;nbsp; workaround.&amp;nbsp; &amp;nbsp;Is this a push to get people off the FREE User agent and requiring a&amp;nbsp; license ICE product.........&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;CSCve30062&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Symptom:&lt;/STRONG&gt;&lt;BR /&gt;&lt;SPAN&gt;User agent cannot communicate with the Firepower Management Center. The following error is displayed on the user agent:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;[The client and server cannot communicate, because they do not possess a common algorithm]&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Conditions:&lt;/STRONG&gt;&lt;BR /&gt;&lt;SPAN&gt;The server hosting the user agent has TLS 1.0 disabled.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Workaround:&lt;/STRONG&gt;&lt;BR /&gt;&lt;SPAN&gt;Enable TLS 1.0 on the machine where user agent is running. If security policy forbids enabling TLS 1.0 on that machine, install the user agent on a different machine. (For security reasons, you might not want the TLS 1.0 to run on your Active Directory server, for example.)&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 10 Apr 2020 14:07:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4063444#M1069072</guid>
      <dc:creator>dotran</dc:creator>
      <dc:date>2020-04-10T14:07:21Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4076576#M1069651</link>
      <description>&lt;P&gt;It definitely is, the user agent is going out of support and our fixes are to either re-enable TLS 1.0 (can't happen) or utilize ISE-PIC. We don't currently utilize ISE in our environment, so in order to have this functionality we would have to bring it in.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Apr 2020 18:31:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4076576#M1069651</guid>
      <dc:creator>Joshua Edwards</dc:creator>
      <dc:date>2020-04-29T18:31:35Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Firepower User Agent support for TLSv1.2</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4076646#M1069660</link>
      <description>&lt;P&gt;Yes, that is my understanding as well now, was informed by TAC that ISE-PIC was the recommended approach...either that or replace with Palos &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Apr 2020 19:52:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-user-agent-support-for-tlsv1-2/m-p/4076646#M1069660</guid>
      <dc:creator>borman.bravo</dc:creator>
      <dc:date>2020-04-29T19:52:29Z</dc:date>
    </item>
  </channel>
</rss>

