cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
336
Views
5
Helpful
3
Replies

Is v2.4 user database encryption still the same as v1.2?

bobcook1
Level 1
Level 1
 

Hi all,

 The ISE Security Best Practices (Hardening) says that ISE 1.2 is using CBC + AES to encrypt user databases. 

Has this changed in 2.4, or is it still using CBC + AES? I can't find where it's documented elsewhere and we're trying to find out for an audit.

 Many thanks for the help!

3 Replies 3

Jason Kunst
Cisco Employee
Cisco Employee

I have asked our SMEs to look into this

Thanks, Jason!  Much appreciated!

Jason Kunst
Cisco Employee
Cisco Employee
Strictly speaking… ISE has ID stores for ISE internal (aka NA) users, admin users, and guest users, which stored in Oracle db tables, but not user databases per se.
SR for your customer i believe was only a couple of months ago so I do not believe any new info.
For any future looking details please look at http://cs.co/ise-feedback