I have few questions regarding the BCE configuration for CRES (i.e. BCE XML Config file) which I hope someone can help me with:
1) In BCE XML Configuration, under <external> element, there are <secure> and <unsecure> subelements which identify the Cisco RES service URL with HTTPS or HTTP. Under what considitions is HTTP (unsecure) used to access the key server? If I definitely do not wish to allow that, should I remove the <unsecure> element (or set to an invalid URL)?
2) Under <address> element, there is an email address for forwarding teh messages for mobile users. If my receipients are using BCE native app, they should be able to access the CRES service, obtain a key, and decrypt the incoming messages without any need for forwarding the encrypted mesasges to Cisco. Is this correct? If so, could I null the email address to avoid confusing the mobile users?
3) Under the <alborithms> element, there are number of options for defining sifferent encryption/hashing algs. I'm assuming that these are only relevent to the option of BCE performing the encription. But if I use "flag" option, the encryption is done by IronPort and no need for these algorithms on BCE side (and therefore no coordincation is needed between setting of these algs and IronPort encryption profile), Is this a fair assumption?
In this episode of Unhackable, Mike Storm (@mistorm) with his co-host and producer, Sean discuss the Unhackable Principle: Authentication. This is where they talk about passwords, multi-factor authentication, and what it takes to keep you safe when you ...
With the enhancements in ISE 3.0 for integrating with Azure AD via SAML IdP, it is now possible to leverage Microsoft Single Sign-On for multiple ISE Portals (for example Sponsor and Guest/BYOD Portals).
At the time of this writing, ISE cann...
With the enhancements in ISE 3.0 for integrating with Azure AD via SAML IdP, it is now possible to create a BYOD Flow to provide Wireless network access using an employee’s Azure AD credentials.
The use of Azure AD credentials is an alterna...
The table below shows the whole Cisco Security solutions + Splunk integrations add-ons. Kindly let me know if I have missed some add-ons or if there are any new updates. Thank you!
Hope this will be helpful for everyone who is looking for Splunk in...