<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CISCO 9800 wreless controller not getting the http or https access in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4552812#M238453</link>
    <description>&lt;P&gt;Should not impact anything as long as that trustpoint is not being used for your wireless management.&amp;nbsp; Typically it is not, but you can view that yourself prior to making the change.&lt;/P&gt;</description>
    <pubDate>Tue, 15 Feb 2022 15:08:42 GMT</pubDate>
    <dc:creator>Scott Fella</dc:creator>
    <dc:date>2022-02-15T15:08:42Z</dc:date>
    <item>
      <title>CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3988305#M170017</link>
      <description>&lt;P&gt;Hello Team,&amp;nbsp;&lt;/P&gt;&lt;P&gt;i am trying to deploy the two C9800-40-K9 controller in the network&lt;/P&gt;&lt;P&gt;1- Before connecting the both controller to the network&lt;/P&gt;&lt;P&gt;i had given one ip adress 10.91.225.80 ip&amp;nbsp; to the Gi0 of WLC1 and connected the cable between SP port and laptop with static ip address 10.91.225.82&lt;/P&gt;&lt;P&gt;2.from laptop i am able to take the https acess of the WLC1 , i upgraded the IOS for WLC1 to the 16.11.01&amp;nbsp;&lt;/P&gt;&lt;P&gt;3.same thing i did for the WLC2 upgraded the IOS and 10.91.225.81&lt;/P&gt;&lt;P&gt;4.during the configuration of WLC1 and WLC2 i used Gi0 as the wireless Managment interface&lt;/P&gt;&lt;P&gt;5. Then we connected the both the WLC1 and WLC2 to the network but during this time i didnt check the connectivity of the WLC from coreswitch&lt;/P&gt;&lt;P&gt;6. Both WLC RP Port is in L2 vlan 498&lt;/P&gt;&lt;P&gt;7.after rackmounting Both WLC by connecting to the SP to the laptop from the browser i configured the HA between two WLC , HA form properly , i did the failover test it was working properly&lt;/P&gt;&lt;P&gt;8. but when i try to connect from the different vlan2 or Vlan 50 from other switch ports i am not able to take the https access of both controller , i am getting ERR_SSL_PROTOCOL_ERROR in the browser&lt;/P&gt;&lt;P&gt;9. can i help me what may go worng ?&lt;/P&gt;&lt;P&gt;10.i have license file but i didnt uploaded them on any WLC?&lt;/P&gt;&lt;P&gt;11. as Gi0 is not pinging from other network i changed Gi0 ip to the interface vlan 50 and wireless mgmt to int vlan 50 but still i am not able to ping the int vlan 50 ip&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;can somebody help did we are doing something wrong&lt;/P&gt;&lt;P&gt;Now we are not able to ping the int vlan 50 from outside network&amp;nbsp;&lt;/P&gt;&lt;P&gt;we have given another int vlan 2 ip in WLC1 and this ip we are able to ping but when we try to take the browser with the interface vlan 2 of WLC i am getting the ERR_SSL_PROTOCOL_ERROR&lt;/P&gt;&lt;P&gt;attached is the diagram and attached is the error screenshot&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks all&lt;/P&gt;&lt;P&gt;Shrikant Gaikwad&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 18:20:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3988305#M170017</guid>
      <dc:creator>Shrikant Gaikwad</dc:creator>
      <dc:date>2021-07-05T18:20:48Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3988455#M170018</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;- I can only presume that your Intranet and or inter-vlan networking setup isn't &lt;FONT color="#FF0000"&gt;consistent&lt;/FONT&gt; and does not allow full ssl access to the wireless controller. Please check and &lt;STRONG&gt;verify.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;M.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Nov 2019 10:37:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3988455#M170018</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2019-11-24T10:37:32Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3993712#M170019</link>
      <description>&lt;P&gt;I have the same issue accessing a Cisco 9800 via HTTPS. I can reach several AirOS and on other 9800 controller on the same subnet.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Dec 2019 21:01:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3993712#M170019</guid>
      <dc:creator>fburn7931</dc:creator>
      <dc:date>2019-12-04T21:01:55Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3993945#M170020</link>
      <description>Can you access it after a reboot? Sounds like the https daemon crashed on the WLC, if it works again after the reboot.</description>
      <pubDate>Thu, 05 Dec 2019 07:54:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3993945#M170020</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2019-12-05T07:54:27Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3994246#M170021</link>
      <description>Try the following:&lt;BR /&gt;&lt;BR /&gt;show run | inc crypto&lt;BR /&gt;&amp;gt;&amp;gt;&amp;gt; Find trustpoint named TP-Self-Signed-xxxxx&lt;BR /&gt;conf t&lt;BR /&gt;no crypto pki trustpoint TP-Self-Signed-xxxxxx&lt;BR /&gt;no ip http server&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;ip http server&lt;BR /&gt;ip http secure-server&lt;BR /&gt;ip http authentication &lt;LOCAL&gt;&lt;BR /&gt;&lt;BR /&gt;********************************************************************&lt;BR /&gt;&lt;BR /&gt;WA-RED-9800-L-01#show run | inc crypto&lt;BR /&gt;crypto pki trustpoint TP-self-signed-774234387&lt;BR /&gt;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;crypto pki certificate chain TP-self-signed-774234387&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt; &lt;BR /&gt;WA-RED-9800-L-01(config)#no crypto pki trustpoint TP-self-signed-774234387&lt;BR /&gt;% Removing an enrolled trustpoint will destroy all certificates&lt;BR /&gt; received from the related Certificate Authority.&lt;BR /&gt; &lt;BR /&gt;Are you sure you want to do this? [yes/no]: yes&lt;BR /&gt;% Be sure to ask the CA administrator to revoke your certificates.&lt;BR /&gt; &lt;BR /&gt;WA-RED-9800-L-01(config)#no ip http server&lt;BR /&gt;WA-RED-9800-L-01(config)#no ip http secure-server&lt;BR /&gt;WA-RED-9800-L-01(config)#ip http server&lt;BR /&gt;WA-RED-9800-L-01(config)#ip http secure-server&lt;BR /&gt;WA-RED-9800-L-01(config)#&lt;BR /&gt;Oct 30 03:52:37.652: %PKI-4-NOCONFIGAUTOSAVE: Configuration was modified.  Issue "write memory" to save new IOS PKI configuration&lt;BR /&gt;WA-RED-9800-L-01(config)#ip http authentication local&lt;BR /&gt;&lt;/LOCAL&gt;</description>
      <pubDate>Thu, 05 Dec 2019 17:13:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3994246#M170021</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2019-12-05T17:13:08Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995076#M170022</link>
      <description>&lt;P&gt;Thanks, this worked for me.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Dec 2019 20:32:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995076#M170022</guid>
      <dc:creator>JuanFlores68156</dc:creator>
      <dc:date>2019-12-06T20:32:12Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995408#M170023</link>
      <description>Glad that helped. &lt;BR /&gt;</description>
      <pubDate>Sun, 08 Dec 2019 10:00:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995408#M170023</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2019-12-08T10:00:09Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995425#M170024</link>
      <description>Thanks</description>
      <pubDate>Sun, 08 Dec 2019 12:15:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995425#M170024</guid>
      <dc:creator>Shrikant Gaikwad</dc:creator>
      <dc:date>2019-12-08T12:15:09Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995429#M170025</link>
      <description>&lt;P&gt;Thank you so much for all your time and solution and sorry for the late reply&lt;/P&gt;&lt;P&gt;Last week we disable https access and only permitted http access to get the browser,&lt;/P&gt;&lt;P&gt;we got the http access of primary WLC and showing HA is not working properly so we break the HA between two WLC and factory reset both the WLC and try to do basic setup like before(with the day 0 setup) but now both the &lt;STRONG&gt;WLC is giving the internal error during day 0 setup as we try add the country FR&amp;nbsp;&lt;/STRONG&gt;to complete the basic setup.&lt;/P&gt;&lt;P&gt;we discover we faced issue CSCvq01830&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvq01830" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvq01830&lt;/A&gt;&lt;/P&gt;&lt;P&gt;as per the above link we disable both radios from CLI and we able to finish the day 0 setup.&lt;/P&gt;&lt;P&gt;we upgraded the controller now in Bundle mode to 16.12.1s and everything is working properly&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Many thanks&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326193"&gt;@Scott Fella&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 08 Dec 2019 12:31:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/3995429#M170025</guid>
      <dc:creator>Shrikant Gaikwad</dc:creator>
      <dc:date>2019-12-08T12:31:33Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4025800#M170026</link>
      <description>&lt;P&gt;Thanks Scott. this worked for me.&lt;/P&gt;&lt;P&gt;Is this known issue/bug ? do we have any permanent solution ?&lt;/P&gt;&lt;P&gt;I am also going ask TAC guys.&lt;/P&gt;</description>
      <pubDate>Fri, 07 Feb 2020 16:54:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4025800#M170026</guid>
      <dc:creator>jegan_rajappa</dc:creator>
      <dc:date>2020-02-07T16:54:00Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4040360#M170027</link>
      <description>this worked for me also!</description>
      <pubDate>Wed, 04 Mar 2020 18:11:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4040360#M170027</guid>
      <dc:creator>netops500</dc:creator>
      <dc:date>2020-03-04T18:11:59Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4042997#M170028</link>
      <description>&lt;P&gt;This procedure also worked for me, thank you very much.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Mar 2020 18:47:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4042997#M170028</guid>
      <dc:creator>rubenmartinez</dc:creator>
      <dc:date>2020-03-09T18:47:26Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260322#M224380</link>
      <description>&lt;P&gt;Has this worked for anyone running 17.3.1? See below:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;A-INT-XXXXXX#show run | inc crypto&lt;BR /&gt;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;crypto pki trustpoint DNAC-CA&lt;BR /&gt;crypto pki trustpoint sdn-network-infra-iwan&lt;BR /&gt;crypto pki trustpoint TP-self-signed-2753238167&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt;crypto pki certificate chain DNAC-CA&lt;BR /&gt;crypto pki certificate chain sdn-network-infra-iwan&lt;BR /&gt;crypto pki certificate chain TP-self-signed-2753238167&lt;BR /&gt;A-INT-XXXX#conf t&lt;BR /&gt;Enter configuration commands, one per line. End with CNTL/Z.&lt;BR /&gt;A-INT-XXXX(config)#no crypto pki trustpoint TP-self-signed-2753238167&lt;BR /&gt;% Removing an enrolled trustpoint will destroy all certificates&lt;BR /&gt;received from the related Certificate Authority.&lt;/P&gt;&lt;P&gt;Are you sure you want to do this? [yes/no]: yes&lt;BR /&gt;% Be sure to ask the CA administrator to revoke your certificates.&lt;/P&gt;&lt;P&gt;A-INT-XXXX(config)#no ip http server&lt;BR /&gt;A-INT-XXXX(config)#no ip http secure-server&lt;BR /&gt;A-INT-XXXX(config)#ip http server&lt;BR /&gt;A-INT-XXXX(config)#ip http secure-server&lt;BR /&gt;A-INT-XXXX(config)#exit&lt;/P&gt;&lt;P&gt;A-INT-XXXX#write mem&lt;/P&gt;&lt;P&gt;!!!!&lt;BR /&gt;A-INT-XXXX#show run | inc crypto&lt;BR /&gt;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;crypto pki trustpoint DNAC-CA&lt;BR /&gt;crypto pki trustpoint sdn-network-infra-iwan&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt;crypto pki certificate chain DNAC-CA&lt;BR /&gt;crypto pki certificate chain sdn-network-infra-iwan&lt;BR /&gt;A-INT-XXXXXX#&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or is this something for TAC to fix?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Dec 2020 20:33:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260322#M224380</guid>
      <dc:creator>m-avramidis</dc:creator>
      <dc:date>2020-12-17T20:33:39Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260351#M224382</link>
      <description>&lt;P&gt;Have you tried to issue the following again with the ip http authentication local?&amp;nbsp; I have done this multiple times in my lab with various equipment with no issues.&amp;nbsp; You can also try a reboot.&lt;/P&gt;
&lt;P&gt;A-INT-XXXX(config)#no ip http server&lt;BR /&gt;A-INT-XXXX(config)#no ip http secure-server&lt;BR /&gt;A-INT-XXXX(config)#ip http server&lt;BR /&gt;A-INT-XXXX(config)#ip http secure-server&lt;BR /&gt;A-INT-XXXX(config)#exit&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Dec 2020 21:03:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260351#M224382</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2020-12-17T21:03:54Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260358#M224383</link>
      <description>Thanks for your answer, yes have tried it a number of times. Since it is in production we have not done a reboot (just a force switchover). Does your setup includes DNA-C? The logs - WLC - indicates a missmatch with the DNA trustpoint. I will upload the logs to this ”case” tomorrow morning.&lt;BR /&gt;</description>
      <pubDate>Thu, 17 Dec 2020 21:11:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260358#M224383</guid>
      <dc:creator>m-avramidis</dc:creator>
      <dc:date>2020-12-17T21:11:21Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260461#M224392</link>
      <description>I do have DNAc but that trust point is separate from the UI. You can always point to a different trustpoint also. A force failover is the same as a reload, because it power cycles the unit you run it against.&lt;BR /&gt;</description>
      <pubDate>Fri, 18 Dec 2020 02:20:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260461#M224392</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2020-12-18T02:20:21Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260687#M224414</link>
      <description>&lt;P&gt;I solve the problem by removing:&lt;/P&gt;&lt;P&gt;A-INT-WLC02#sh run | incl http&lt;/P&gt;&lt;P&gt;enrollment url &lt;A href="http://10.3.99.31:80/ejbca/publicweb/apply/scep/sdnscep" target="_blank"&gt;http://10.3.99.31:80/ejbca/publicweb/apply/scep/sdnscep&lt;/A&gt;&lt;/P&gt;&lt;P&gt;no ip http server&lt;/P&gt;&lt;P&gt;ip http authentication local&lt;/P&gt;&lt;P&gt;no ip http secure-server&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;&lt;EM&gt;ip http secure-trustpoint TP-self-signed-2753238167&lt;/EM&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;ip http client source-interface Vlan99&lt;/P&gt;&lt;P&gt;&amp;nbsp; destination transport-method http&lt;/P&gt;&lt;P&gt;http-tlv-caching&lt;/P&gt;&lt;P&gt;http-tlv-caching&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So after removing &lt;FONT color="#FF0000"&gt;ip http secure-trustpoint.... &lt;FONT color="#000000"&gt;and reapplying ip http server and ip http secure-server it worked. But, and here is the kicker, the crypto look like this now:&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;FONT color="#000000"&gt;A-INT-XXXXX#show run | inc crypto&lt;BR /&gt;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;crypto pki trustpoint DNAC-CA&lt;BR /&gt;crypto pki trustpoint sdn-network-infra-iwan&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt;crypto pki certificate chain DNAC-CA&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;FONT color="#000000"&gt;So no self-signed certificates... no new certificate was - at least not visiable - created after running the ip http secure-server command.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;FONT color="#000000"&gt;&lt;BR /&gt;I will be glad if someone can reproduce this fix using:&lt;BR /&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;FONT color="#000000"&gt;9800 WLC - HA - running XE 17.3.1&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;FONT color="#000000"&gt;DNA-C running 1.3.3.9&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;FONT color="#000000"&gt;or with DNA-C 2.X (our customer will upgrade their DNA installation to 2.X mid January.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Dec 2020 12:17:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260687#M224414</guid>
      <dc:creator>m-avramidis</dc:creator>
      <dc:date>2020-12-18T12:17:24Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260864#M224423</link>
      <description>Have you looked at show run | in trustpoint&lt;BR /&gt;</description>
      <pubDate>Fri, 18 Dec 2020 16:22:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4260864#M224423</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2020-12-18T16:22:21Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4267656#M224843</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was running in the same kind of issue after breaking HA made in lab environment for an installation on client environment and breaking it again to put it on a different subnet.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Long story short, i suspect it to be in my case due to a corporate management of my firefox that made part of the problem because i was unable to access it no matter what after installation (i think i may have switch the 2 9800 between what they was supposed to be (primary and secondary)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;anyway, i tried the workaround you wrote and now i can access them as a cluster in https.&lt;/P&gt;&lt;P&gt;I do have the following with my new certificate visible&lt;/P&gt;&lt;P&gt;do sh run | i crypto&lt;BR /&gt;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;crypto pki trustpoint TP-self-signed-454043421&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt;crypto pki certificate chain TP-self-signed-454043421&lt;/P&gt;&lt;P&gt;By the way i'm in 17.3.1, HA&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Wed, 06 Jan 2021 09:47:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4267656#M224843</guid>
      <dc:creator>jfumeron78</dc:creator>
      <dc:date>2021-01-06T09:47:35Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO 9800 wreless controller not getting the http or https access giving ERR_SSL_PROTOCOL_ERROR</title>
      <link>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4268525#M224898</link>
      <description>&lt;P&gt;Hi Guys.&amp;nbsp; I have a pair of 9800 WLCs in HA and they have recently reloaded due to a bug.&amp;nbsp; Since then, the original backup is now active and we are unable to access the GUI (CLI is fine).&amp;nbsp; If I remove the self-signed trustpoint, will it affect the APs that are currently joined with the HA pair.&amp;nbsp; There are around 1000 APs joined at the moment.&amp;nbsp; Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Jan 2021 17:44:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-9800-wreless-controller-not-getting-the-http-or-https/m-p/4268525#M224898</guid>
      <dc:creator>support1@lima.co.uk</dc:creator>
      <dc:date>2021-01-07T17:44:35Z</dc:date>
    </item>
  </channel>
</rss>

