05-05-2016 08:05 AM - edited 03-18-2019 05:53 AM
I have a SX10 running the latest CE firmware, registered to CUCM 11.0
I also have a TMS system (15.1.0) talking to CUCM fine.
When I try to add/manage this SX10 in TMS, TMS says "No HTTPS Response". I can talk to the SX10 via HTTPS from the TMS server fine. If I Wireshark TMS talking to the SX10, I can see TMS making a connection to port 443 on the SX10, but shutting down the TCP connection after the SX10 sends a SSL "Client hello" packet.
I'm wondering if this is a certificate/CA trust issue? Or is it something simpler than that?
GTG
05-09-2016 01:55 AM
Hey Gordon,
Have a look at the CE8.1.1 and TC7.3.6 release notes, as you can be affected by TLS incompatibility.
quote:
"Cisco TelePresence Endpoints running CE8.1.0 only support TLS version 1.1 and 1.2 due to security concerns with TLS version 1.0. Please note that this may affect communication with servers that only support TLS version 1.0. If TMS is running on a Windows server that only has TLS version 1.0 enabled by default (i.e. Windows Server 2008 R2) it may cause connection problems when the endpoint is upgraded to CE8.1.0. Make sure TLS 1.2 or 1.1 is enabled on the server before upgrading to CE8.1.0. Older browsers may not be able to reach the endpoint’s web interface on HTTPS if the browser only supports TLS 1.0. "
//Marius
05-09-2016 02:02 AM
I found out that TMS was confused about what security level it was running at. I had to change, reboot, and change back, the security level for TMS to work correctly.
GTG
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide