Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

Labels

Forum Posts

Hello !! We recently came across an error with ISE and some Android devices. The failure reason is: 12948 supplicant sent unexpected unencrypted tls handshake message instead of tls application data in peap protocol. verify that supplicant is configu...

Eric23 by Level 1
  • 427 Views
  • 1 replies
  • 0 Helpful votes

Hi all, I saw a conversation about this from a few years ago. Can someone at Cisco please confirm if ISE supports EAP-SIM, EAP-AKA, or EPS-AKA, of if there are plans to do so.  If not, do enterprises still have to rely on CPAR, and how would that int...

mamckenn by Level 1
  • 1163 Views
  • 4 replies
  • 0 Helpful votes

Hello.Upgraded ISE patch version from 3 to 12After the upgrade, I entered the 'show version' command and it says============Show version =============Cisco Application Deployment Engine OS Release: 2.6ADE-OS Build Version: 2.6.0.900.55ADE-OS System A...

Hello community, While trying to integrate FMC with ISE-PIC we are getting the error below after i press TEST while creating identity source. Primary host: test: ISE connection. Preparing ISE Connection objects... Connecting to ISE server... Beginnin...

Bledian by Level 1
  • 1211 Views
  • 5 replies
  • 0 Helpful votes

I have two queries:1. With the given below configuraiton: aaa new-modelaaa authentication login default  enableaaa authentication enable default enable Whenever user log in to NAS, it has to enter enable  password twice, one for login, and second for...

ISE 2.7 has patch 4,5,6. SXP stays in 'initializing' on SXP service after either patch 5 or 6 upgrade.  We have tried everything but we could not get it back 'running' stay.  'sh cts sxp conn bri' shows On on all devices.  We do use SXP maps. Does an...

dyuen001 by Level 1
  • 2856 Views
  • 5 replies
  • 0 Helpful votes

Resolved! logjam attack

Hi ,How to change   the value to 2048  in cisco ise 8444 SSL/TLS Diffie-Hellman Modulus <= 1024 Bits6514 SSL/TLS Diffie-Hellman Modulus <= 1024 Bits8444 SSL/TLS Diffie-Hellman Modulus <= 1024 Bits443 SSL/TLS Diffie-Hellman Modulus <= 1024 Bitsise ver...

Hi folks,I’ve got a specific use case whereby we need to use peap-mschapv2 and add a condition where by the device has to be in a endpoint identity group by mac. For example the workflow - User connects to wireless with an ssid that is 802.1x enabled...

Hi, We have a Cisco ISE implementation with a single domain (Active Directory), we are trying to add an other domain (New Active Directory with a new Domain name separate from the old one) to our implementation, is it possible to do it, if YES how to...