02-08-2016 04:41 PM - edited 03-08-2019 04:31 AM
I upgraded to IOS Version 15.2 (4) E on a 3750-X switch stack and I can no longer access the switch via the Cisco Network Assistant (CNA) via HTTPS/SSL.
I have a self signed cert and the following settings
no ip http server
ip http authentication aaa
ip http secure-server
Accessing the switch via https in IE 11 works fine.
02-08-2016 04:57 PM
Have you tried upgrading your copy of CNA?
02-08-2016 05:02 PM
I'm running the latest version 6.2
02-08-2016 05:06 PM
Perhaps try enabling "ip http" and connecting over HTTP, and see if you can get the simpler configuraiton going first.
02-08-2016 05:09 PM
Already did that and HTTP works fine... HTTPS does not work.
I get...
Unable to connect.
SSL handshake process failed. The secure connection through HTTPS could not be established.
I've uninstalled CNA and reinstalled it.
I'm using the self-signed cert that is automatically created.
02-08-2016 05:15 PM
I'm going to guess that something was disabled in the new switch code, like SSL3, or such like, and CNA still needs it.
Perhaps have a play with:
ip http secure-ciphersuite ...
02-08-2016 05:16 PM
I'll loo at that
05-23-2016 10:49 AM
I'm trying to do something similar. Any update on this?
05-23-2016 03:47 PM
I believe the issue is that CNA needs to be updated
From...http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3750x_3560x/software/release/15-2_4_e/releasenotes/rn-1524e-3750x3560x.html#pgfId-832031
Cisco IOS 15.2(2)E will be supported in a future release of the Cisco Network Assistant.
01-31-2017 02:14 PM
It seems that this issue is pervasive across all manner of switches. I have 2960X and 3650 both cannot be managed without first enabling http server by changing
no ip http server
ip http secure-server
to
ip http server
ip http secure-server.
This is with CNA 6.3 and 15.2(2)E5 on 2960X. and 03.06.04.E on 3650.
Switch release notes state the following.
For Cisco IOS Release 15.2(2)E, CNA support is available on release version 5.8.9 and later.
12-09-2016 08:19 AM
Have the same issue on 3850 48 and 24 ports models.
HTTP works, not HTTPS in CNA
Both work in IE 11
Latest IOS and CNA running....
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide