Does your organization use Splunk, Cisco Catalyst Center (formerly DNA Center) or Cisco Identity Services Engine (ISE) to manage your network?
Do you have security concerns about unmanaged endpoints o...
After going through several resources on configuring MAC Authentication Bypass (MAB) with Cisco ISE, I found that it's quite simple. Most of the configuration is done on the switch, with only minimal ...
It's very important for organizations and individuals to stay informed about the lifecycle status of the products they rely on. This is also true for AI-enabled systems, where models and AI-enabled ap...
PaloAlto firewall uses the RADIUS Vendor-Specific Attributes (VSA) code 25461 to manage administration authorizations or admin roles with a Radius server such as Cisco ISE.
The attribute PaloAlto-A...
IntroductionCisco ASAs and FTDs can be configured with Certificate Authority to perform various jobs, like authenticating the users based on certificates before they connect to the VPN. However, the c...
How to troubleshoot VOIP issues with Firewalls
First, VoIP traffic has two components:
1-Signalling:
Process of establishing and terminating calls Commonly used protocols are SIP, H.323, MGCP, Skinny,...
What is SIP ALG Application Layer Gateway and SIP Pinhole.SIP ALG is a feature where the firewall will inspect the SIP packets to perform Layer 7 NAT ( from private IP to public IP).Goal of SIP ALG1- ...
If you work in a large data center and your task is to support firewalls (Cisco ASA), then you probably encountered a huge number of lines in their configurations. These configurations can include tho...
EAP runs over Layer 2 of the OSI model, the data link layer, and doesn't require Layer 3 IP connectivity.
EAP Packet sent by the endpoint does not have L3 and L4 headers, the L7 data is encapsulate...
Today’s threats are evolving quickly and security tools and the professionals who manage them cannot keep pace to effectively defend their organizations, let alone take proactive steps to stay ahead o...
Cisco ISE system certificates are server or entity certificates that validate a Cisco ISE node in inter-node communication and to end users such as guest and device portal. System certificates are ...
Full Cisco Secure Network Analytics Appliances Deployment and Integration with Cisco ISE using PXGrid for ANC and Automatic Response.
I finished to write a complete guide of Cisco Secure Network Ana...
We recently hosted a live stream with Cisco DevNet discussing AI security. The session covered a range of topics, from current vulnerabilities in AI systems to future trends, the risks associated with...
Cisco Telemetry Broker Architecture in Cisco Secure Network Analytics Solutions.The architecture of Cisco Telemetry Broker consists of two components: -Manager Node-Broker Node. Broker Nodes are all m...
Objective:Connect two machines at same time to allow them to authenticate using EAP-TLS and PEAP at the same time.