06-14-2017 12:26 AM
HI,
I configured ISEv2.0 with External Database LDAP feature.
Test by LDAP bind from Primary Master ISE it'ok but the other ISE in grid tells ERROR.
Anyone can tell me why?
139713221547776:error:1409E0E5:SSL routines:SSL3_WRITE_BYTES:ssl handshake failure:s3_pkt.c:637
Solved! Go to Solution.
06-14-2017 08:51 AM
I would suggest to do a TCPDUMP or similar wired capture between ISE primary node and the LDAP server in question. Then, review the pcap file in WireShark or similar tool to examine the SSL packet exchange details.
06-14-2017 08:51 AM
I would suggest to do a TCPDUMP or similar wired capture between ISE primary node and the LDAP server in question. Then, review the pcap file in WireShark or similar tool to examine the SSL packet exchange details.
06-14-2017 11:26 PM
Hi,
I find the solution :d
In External Identity Source when I configured LDAP external server via LDAPS I had select the "Issuer CA of ISE Certificates" and I had the error, with only the "LDAP Server Root CA" the problem isn't.
Thanks for your help!!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide