cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
863
Views
0
Helpful
1
Replies

firepower SSL decryption invalid issuer error

tato386
Level 6
Level 6

My SSL decryption policy and rules seem to be working correctly but looking thru the logs I found an interesting anomaly.  I see "invalid issuer" for traffic flows that seem to be working fine.  There are also "valid" events but it seems like it depends on the client?  For instance, safari mobile and bingbot clients get "valid" but Edge and Chromium get "invalid issuer".  All of these events are going to the same internal host with known key decryption.  Very odd how different clients generate different events.  See attached file for details.

1 Reply 1

arslansaeed487
Level 1
Level 1

Hello, Security Technologies and Solutions - Volume II: Cisco Security Solutions for Network Access Control, Segmentation, Context Sharing, Secure Connectivity, and Virtualization, you will learn about the many different ways of sharing context out of Cisco Identify Services Engine (ISE) to other security solutions, about Rapid Threat Containment, and about the Platform Exchange Grid (pxGrid). Because ISE is positioned to know exactly who and what is on the network at any given time, as well as assign different levels of access and context assignments with security group tags, it is the perfect security tool to be at the center of a security ecosystem. If you need any help this is my URL for further details

thanks

Review Cisco Networking for a $25 gift card