cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1047
Views
0
Helpful
1
Replies

ISE 1.3 authentication issue (error 12321 PEAP failed SSL/TLS)

Eric
Level 1
Level 1

Hi all,

I have this error when authenticating on wifi (on the cisco ISE 1.3)

12321 PEAP failed SSL/TLS handshake because the client rejected the ISE local-certificate.

 

I have a cluster of two VM. I have also local certificate for both and Quovadis.

If anyone have tips, docs or anything else that could help, thank you.

 

Regards

Eric

1 Accepted Solution

Accepted Solutions

nspasov
Cisco Employee
Cisco Employee

Hi Eric, this error message indicates that the client that is trying to authenticate does NOT trust the Certificate Authority that signed the certificate of your ISE servers. Are you using a self-signed certificate or did you get a public certificate from a public CA such as VeriSign, GoDaddy, etc?

 

Thank you for rating helpful posts!

View solution in original post

1 Reply 1

nspasov
Cisco Employee
Cisco Employee

Hi Eric, this error message indicates that the client that is trying to authenticate does NOT trust the Certificate Authority that signed the certificate of your ISE servers. Are you using a self-signed certificate or did you get a public certificate from a public CA such as VeriSign, GoDaddy, etc?

 

Thank you for rating helpful posts!