cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1102
Views
0
Helpful
2
Replies

ISE 2.1 RSASSA-PSS support

vchrenek
Cisco Employee
Cisco Employee

Hi Team,

Is there any documentation stating that ISE 2.1 doesn't support RSASSA-PSS certificates? I found multiple cases where customers needed to change the algorithm to have certificate usable, despite the fact that was shared earlier, that particularly ISE 2.1 will support it.

Thanks,

Veronika

2 Replies 2

hslai
Cisco Employee
Cisco Employee

ISE 2.1 supports it for trusted certificates and endpoint certificates for EAP-TLS authentications. The certificate hierarchy is currently displaying the signature algorithm as 1.2.840.113549.1.1.10. An internal bug is filed on that. Doc might need updating.

Thanks.

-Veronika