cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1893
Views
0
Helpful
1
Replies

MACSec switch to switch with or without ISE

REJR77
Level 1
Level 1

Hello,

I have a question regarding Switch to Switch encryption.

we are running ISE to secure a switch to switch connection with Macsec. (802.1x mode)

Because of some issues with ISE (upgrade, maintenance) we lost the connections between the 2 swithes and it impacts production.

This is why we wonder if we would go to run encryption manually on the switch (cts manual)

Our concerns is whether we are going to lose security?

Actually in which way manual mode would be less secure? I can’t find any clear information about that on Cisco website.

How an attacker can decrypt the traffic between the 2 switches? Would it be easier if  we are running in manual mode?

Any good documentation dealing with this would be useful.

Thank you for our feedback

1 Reply 1

ldanny
Cisco Employee
Cisco Employee

Moving your query to the TrustSec community