In my case my default 'ssl encryption' was
ssl encryption rc4-sha1 dhe-aes128-sha1 dhe-aes256-sha1 aes128-sha1 aes256-sha1 3des-sha1
Using the work-around solved my problem at least initially until I schedule the upgrade mtc. window. When comparing ...
It is a non-public bug and the advice is to upgrade to a version 9.3 or greater.
In the meantime a use-at-your-own-risk work-around involves removing the Diffie-Hellman variants in your encryption:
Such as:
ssl encryption aes128-sha1 aes256-sha1 3des...
Opened a case 2 days ago, sent show tech, debugs and packet captures...still waiting to hear back. From what I can tell from the packet caps during a DB fetch command, my ASA is talking to ironport, Certs are being exchanged but no updates happen, n...
I'm having the exact same issue (for about the same amount of time). Suddenly updates stopped. Everything checks out OK DNS, ping to ironport etc. I'll be calling TAC soon
I just had the opposite experience. I cut/pasted the SPID and Serial number values from the CLI and my licenses wouldn't load. The error message was "UDI of file does not match the system". I opened a TAC case and they re-issued licenses based on...