<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco CMX in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4935485#M261425</link>
    <description>&lt;P&gt;&amp;nbsp;Ammahend&lt;/P&gt;&lt;P&gt;This is what we did, and the results and we followed the Cisco documentation but the certificate location was asked for and so we differ in process.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cmxctl config authserver settings&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Enter external RADIUS authentication server host :&amp;nbsp;&lt;BR /&gt;Enter CA cert file for external RADIUS authentication server: /home&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Enter external RADIUS authentication server's DNS name :&amp;nbsp; xxx&lt;BR /&gt;Enter RADIUS server shared secret key: xxxxxxxxx&lt;BR /&gt;Configure local account. This account can be used if RADIUS server is not reachable.&lt;BR /&gt;Enter username: xxxxxx&lt;BR /&gt;Enter password: xxxxxxx&lt;BR /&gt;Repeat for confirmation:&lt;BR /&gt;Checking for CRL Distribution Points&lt;BR /&gt;Found CRL URI(s)&lt;BR /&gt;CRL successfully downloaded from &lt;A title="http://axxxxxxx/" href="http://Axxxxxxx" target="_blank" rel="noreferrer noopener"&gt;http://Axxxxxxx&lt;/A&gt;&lt;BR /&gt;Replacing existing CRL in the CRL collection.&lt;BR /&gt;Import Radius CA Certificate successful&lt;BR /&gt;0&lt;BR /&gt;External RADIUS authentication server configured successfully&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Failed to establish connection radius&lt;/P&gt;</description>
    <pubDate>Fri, 06 Oct 2023 13:27:00 GMT</pubDate>
    <dc:creator>mikegschorrctr</dc:creator>
    <dc:date>2023-10-06T13:27:00Z</dc:date>
    <item>
      <title>Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934212#M261328</link>
      <description>&lt;P&gt;Team&lt;/P&gt;&lt;P&gt;I have a CMX 10.6.3 that does not authenticate to our Cisco ISE using Radius we think it has something to do with the certificate we are using. Is there a specific certificate we are supposed to use for our CMX to authenticate to our ISE&amp;nbsp; 3.2?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Oct 2023 15:40:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934212#M261328</guid>
      <dc:creator>mikegschorrctr</dc:creator>
      <dc:date>2023-10-04T15:40:55Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934253#M261330</link>
      <description>&lt;P&gt;I don't think you need to import any certificate. Do you see any logs in ISE, if yes, share those logs, it would indicate the issue, if No then make sure CMX is added on ISE as Network Device and shared secret is correct between them, then we can look at policy if needed.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Oct 2023 16:53:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934253#M261330</guid>
      <dc:creator>Ambuj M</dc:creator>
      <dc:date>2023-10-04T16:53:18Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934254#M261331</link>
      <description>&lt;P&gt;ammahend&lt;/P&gt;&lt;P&gt;I do not see any live logs in ISE for the CMX even though the CMX has been added in ISE and the shared secret is the same.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Oct 2023 16:57:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934254#M261331</guid>
      <dc:creator>mikegschorrctr</dc:creator>
      <dc:date>2023-10-04T16:57:18Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934256#M261332</link>
      <description>&lt;P&gt;ammahend&lt;/P&gt;&lt;P&gt;when I tried to add ISE in CMX it is asking for a certificate location. So we have a certificate in CMX a .pem certificate.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Oct 2023 17:00:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934256#M261332</guid>
      <dc:creator>mikegschorrctr</dc:creator>
      <dc:date>2023-10-04T17:00:47Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934283#M261335</link>
      <description>&lt;P&gt;refer to page 198 on this &lt;A href="https://www.cisco.com/c/en/us/td/docs/wireless/mse/10-6-3/cmx_config/b_cg_cmx1063.pdf" target="_self"&gt;pdf&lt;/A&gt; and confirm if this is what you followed ?&lt;/P&gt;</description>
      <pubDate>Wed, 04 Oct 2023 18:06:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934283#M261335</guid>
      <dc:creator>Ambuj M</dc:creator>
      <dc:date>2023-10-04T18:06:25Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934293#M261336</link>
      <description>&lt;P&gt;ammahend&lt;/P&gt;&lt;P&gt;I used this document &lt;A href="https://www.cisco.com/c/en/us/td/docs/wireless/mse/10-6-3/cmx_config/b_cg_cmx1063/performing_administrative_tasks.html" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/wireless/mse/10-6-3/cmx_config/b_cg_cmx1063/performing_administrative_tasks.html&lt;/A&gt;&amp;nbsp; In this document I reference the below&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;The following example shows how to configure an external RADIUS authentication server.&lt;/P&gt;&lt;PRE&gt;[cmxadmin@cmx]# &lt;STRONG&gt;cmxctl config authserver settings&lt;/STRONG&gt;
Enter external RADIUS authentication server host : 1.2.3.4
Enter RADIUS server shared secret key : password
Configure local account. This account can be used if RADIUS server is not reachable.
Enter username : cmxadmin
Enter password :
Repeat for confirmation:
External RADIUS authentication server configured successfully But our CMX asked for a certificate location and after we doing this we received this message &lt;SPAN&gt;&lt;SPAN class=""&gt;Replacing existing CRL in the CRL collection.&lt;BR /&gt;Import Radius CA Certificate successful&lt;BR /&gt;0&lt;BR /&gt;External RADIUS authentication server configured successfully Failed to establish connection radius&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt; &lt;/PRE&gt;</description>
      <pubDate>Wed, 04 Oct 2023 18:20:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4934293#M261336</guid>
      <dc:creator>mikegschorrctr</dc:creator>
      <dc:date>2023-10-04T18:20:15Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4935485#M261425</link>
      <description>&lt;P&gt;&amp;nbsp;Ammahend&lt;/P&gt;&lt;P&gt;This is what we did, and the results and we followed the Cisco documentation but the certificate location was asked for and so we differ in process.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;cmxctl config authserver settings&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Enter external RADIUS authentication server host :&amp;nbsp;&lt;BR /&gt;Enter CA cert file for external RADIUS authentication server: /home&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Enter external RADIUS authentication server's DNS name :&amp;nbsp; xxx&lt;BR /&gt;Enter RADIUS server shared secret key: xxxxxxxxx&lt;BR /&gt;Configure local account. This account can be used if RADIUS server is not reachable.&lt;BR /&gt;Enter username: xxxxxx&lt;BR /&gt;Enter password: xxxxxxx&lt;BR /&gt;Repeat for confirmation:&lt;BR /&gt;Checking for CRL Distribution Points&lt;BR /&gt;Found CRL URI(s)&lt;BR /&gt;CRL successfully downloaded from &lt;A title="http://axxxxxxx/" href="http://Axxxxxxx" target="_blank" rel="noreferrer noopener"&gt;http://Axxxxxxx&lt;/A&gt;&lt;BR /&gt;Replacing existing CRL in the CRL collection.&lt;BR /&gt;Import Radius CA Certificate successful&lt;BR /&gt;0&lt;BR /&gt;External RADIUS authentication server configured successfully&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Failed to establish connection radius&lt;/P&gt;</description>
      <pubDate>Fri, 06 Oct 2023 13:27:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4935485#M261425</guid>
      <dc:creator>mikegschorrctr</dc:creator>
      <dc:date>2023-10-06T13:27:00Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4935489#M261427</link>
      <description>&lt;P&gt;you are sure there is no firewall or ACL between ISE and CMX ? I asked because you are not evens seeing any logs inspite of credentials being verified correctly.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Oct 2023 13:35:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4935489#M261427</guid>
      <dc:creator>Ambuj M</dc:creator>
      <dc:date>2023-10-06T13:35:13Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco CMX</title>
      <link>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4935491#M261429</link>
      <description>&lt;P&gt;No there is no firewall between ISE and CMX and they are on the same Vlan and they are on the same EXSI host.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Oct 2023 13:40:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/cisco-cmx/m-p/4935491#M261429</guid>
      <dc:creator>mikegschorrctr</dc:creator>
      <dc:date>2023-10-06T13:40:03Z</dc:date>
    </item>
  </channel>
</rss>

