Hello,
I have a question regarding Switch to Switch encryption.
We are running ISE to secures a switch to switch connection with Macsec. (802.1x mode)
Because of some issues with ISE (upgrade, maintenance) we lost the connections between the 2 swithes and it impacts production.
This is why we wonder if we would go to run encryption manually on the switch (cts manual)
Our concerns is whether we are going to lose security?
Actually in which way manual mode would be less secure? I can’t find any clear information about that on Cisco website.
How an attacker can decrypt the traffic between the 2 switches? Would it be easier to hack if we are running in manual mode?
Any good documentation dealing with this would be useful.
Thank you for your feedback