Security Knowledge Base

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Webinar

 
Labels

Knowledge Base Articles

What is Certificate Authority (CA)?Certificate authority (CA) in network is an authority which issues and manages security credentials and public keys used for message encryption. As being part of  public key infrastructure (PKI),  CA checks with a r...

TCC_2 by Community Member
  • 1477 Views
  • 0 comments
  • 0 Helpful votes

Core issueSince  clients do not get VLAN mapping for connected clients, they cannot get into trusted VLAN and be assigned a Dynamic Host Configuration Protocol (DHCP) address. ResolutionVerify that the Enable VLAN mapping option is checked in CCA ser...

TCC_2 by Community Member
  • 1276 Views
  • 0 comments
  • 0 Helpful votes

Core issueVPN tunnel fails to come up if the configuration is moved from PIX version 6.x to PIX/ASA version 7.x. This issue can be related to the sysopt ipsec pl-compatible command.When the sysopt ipsec pl-compatible command is used in version 6.x, a...

TCC_2 by Community Member
  • 732 Views
  • 0 comments
  • 0 Helpful votes

Core issueUpgrades to version 4.0 from versions earlier than 3.1 are not supported. Make sure the system to which you are upgrading Management Center (MC) for Cisco Security Agents (CSA) meets the new version 4.0 specifications. If it does not, you m...

TCC_2 by Community Member
  • 2526 Views
  • 0 comments
  • 0 Helpful votes

Core issueIn this issue, after you upgrade Cisco Secure ACS, multiple Authentication, Authorization, Accounting (AAA) server entries for same IP address but different name appear under Network Configuration. This issue causes replication to fail. ACS...

TCC_2 by Community Member
  • 1467 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue is due to Cisco bug ID CSCsb67119 in the Adaptive Security Appliance (ASA) version 7.1The Extended Simple Mail Transport Protocol (ESMTP) inspect feature masks the hostname and causes an error when a mailserver is configured to e...

TCC_2 by Community Member
  • 1497 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue occurs due to the presence of Cisco bug ID CSCsd58083.The %CRYPTO-4-IPSEC_AAA_START_FAILURE: IPSEC Accounting was unable to send start record error message is received when stop-only Authentication, Authorization, and Accounting ...

TCC_2 by Community Member
  • 1481 Views
  • 0 comments
  • 0 Helpful votes

Core issueThese debug messages appear when you enable the debug crypto isakmp  command on ASA during the remote access clients authentication.IKEv1]: Group = ani, Username = , IP = x.x.x.x, Removing peerfrom peer table failed, no match![IKEv1]: Group...

TCC_2 by Community Member
  • 867 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue occurs due to the presence of Cisco bug ID CSCsc69628.The Network Address Translation (NAT) exemption command reference displays this statement:You can only include permit statements in the access list.This statement is incorrect...

TCC_2 by Community Member
  • 731 Views
  • 0 comments
  • 0 Helpful votes

Core issueThe issue is documented in Cisco bug ID CSCsd35775.The problem occurs after an upgrade from PIX Firewall software 6.3.4 to 6.3.5(105). The DNS replies are blocked by the outbound ACL for Domain Name System (DNS) queries initiated from outsi...

TCC_2 by Community Member
  • 1550 Views
  • 0 comments
  • 0 Helpful votes
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Top Contributors
Featured Article