cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
383
Views
0
Helpful
3
Replies

CSCwc64081 - Incorrect TLD length check for ISE FQDN

frederick.mercado
Spotlight
Spotlight

This is a problem we cannot connect to our ISE server with a ".i" TLD...cant believe they have a regex validation on this field...like we wont know what FQDN we have...

3 Replies 3

Torbjørn
Spotlight
Spotlight

Rejecting a 1 character TLD is somewhat understandable since it isn't allocated by IANA and isn't a reserved IETF "special use domain". What's worse is that 470 of the IANA registered TLDs are 7 characters or longer. Meaning that 1/3 of all TLDs can't currently be used...

Happy to help! Please mark as helpful/solution if applicable.
Get in touch: https://torbjorn.dev

Sure - but we are also talking about internal ISE communications. Why do we need a regex to keep us from causing a fuss? Let alone, I thought that there is some validation on the application side. I have a new severity level 2 open on this: 696437781 since this bug is also happening on the gold star version when it shows as "fixed" release

In the gold star version, we are seeing that there is no limit. They corrected the +6 in the regex, but left the "less than 2" rule. For instance I was able to put in a FQDN of textsite.test.nbewrogfgooikvbasrbvivba