08-31-2023 05:18 AM
Hello, everyone,
I wanted to share a problem I am experiencing regarding SSO configuration (the SSO server is a FortiAuthenticator) for Cisco Secure Network Analytics:
As per the guideline, I entered the rootCA in the cisco SNA Trust Store and after validating it I went to the console to enter the provider IDP and after getting the URL to download the sp.xml metadata file, when I go to type it in to get the file it returns a 401 error and does not let me continue to perform the download.
Would anyone know how to support me with this problem ?
Thanks in advance
09-12-2023 07:11 PM
Hi mario ravellino,
I'm sorry to hear that you're experiencing difficulties with SSO configuration for Cisco Secure Network Analytics.
Here I can offer some general troubleshooting steps that might help:
Verify the credentials: Ensure that you are using the correct username and password to access the SSO server. Double-check if the credentials provided are accurate and have the necessary permissions.
Check network connectivity: Make sure that the Cisco Secure Network Analytics server has network connectivity to the SSO server. Verify if there are any firewalls, proxies, or network restrictions that could be blocking the connection.
Review SSO server configuration: Check the SSO server configuration, specifically the provider IDP settings. Ensure that the settings are correctly configured and match the requirements of Cisco Secure Network Analytics.
Validate SSL certificates: Confirm if the SSL certificates used by the SSO server and Cisco Secure Network Analytics are valid and trusted. In some cases, SSL certificate issues can cause authentication errors.
Examine log files: Review the log files of both the SSO server and Cisco Secure Network Analytics for any error messages or relevant information. This can provide insights into the cause of the authentication issue.
If these steps do not resolve the problem, it may be helpful to reach out to Cisco TAC technical support team for further assistance.
-----------------------------------------
If you find my reply solved your question or issue, kindly click the 'Accept as Solution' button and vote it as helpful.
You can also learn more about Secure Network Analytics (formerly known as Stealthwatch) through our live Ask the Experts (ATXs) session. Check out Cisco Network Security ATXs Resources [https://community.cisco.com/t5/security-knowledge-base/cisco-network-security-ask-the-experts-resources/ta-p/4416493] to view the latest schedule for upcoming sessions, as well as the useful references, e.g. online guides, FAQs.
-----------------------------------------
Best Regards,
Henry
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide