cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
562
Views
0
Helpful
3
Replies

CSCvw79542 - Policy Deployment failure due to "certificate eo not defined".

dotran
Level 1
Level 1

Cisco recommended to disable LDAPS and fallback to LDAP for the Realms-Direcorty integration.   Anyone else have a problem with this recommendation besides myself?

3 Replies 3

r.mikes
Level 1
Level 1

The major problem is that the policy deployment fails even for automatic deployments after scheduled automatic SRU update.

Disabling SSL for directory integration is neither solution nor WO.

 

Regards

Roman

jonathankarras
Level 1
Level 1

Fixed now in 6.7.0.2. Unclear to me if the issue is FMC or FTD but its now there.

dotran
Level 1
Level 1

Yes,  latest 6.7.0.2 seems to have resolved the bug.    One of our FTD would also disable the "outside" interface after a failed policy deployment which was causing lots of problems.  Not sure if it was a related bug or just bad bad upgrade from 6.6 to 6.7 so I went ahead and reimaged it just in case.   I'm regretting my decision to switch from the ASA/FP image to FTD.