Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We are trying to configure secure logging using TLS for our edge routers, we need to import the certificate to be used but I cannot see the terminal option in the trustpoint enrollment section. We also tried converting the certificate to pkcs12 forma...
We have a 3504 wireless controller that is configured in HA running in version 8.10.130 before upgrading to 8.10.162. We perform the upgrade via Cisco DNA, but unfortunately the standby controller has not been upgraded. What is the best approach on f...
Hi,We reimage our ISE, but unfortunately we only backup the certificate without the private key.Now we want to import that certificate but a private key is required.Is it possible to upload the old certificate without using the private key? We are us...
Hi, I'm using anyconnect NAM as a supplicant in my windows 10 (ver 1903) using wired authentication.I'm using ISE 2.4 with patch 10 installed with EAP-FAST for the protocol.I already configured the proper settings for the NAM using the profile editor...
Hi Enes,Unfortunately its not working for me. Do i need something to the p12 file? I'm just importing our root CA to the device. its in PEM format and I used openssl to convert it. any special commands or attributes to convert the file?
The HA state now is not redundant and the peer state is UNKNOWN - communication down.The secondary controller can be accessed via SSH only but we cannot login as the credentials are not working.We also tried consoling the controller and we cant also...
Hi Jason,I also tried using PEAP(EAP-GTC) and the same result.For example, I input [email protected], when you go to radius live logs it only shows john.doe without the @domain.comi need the whole username to authenticate.
that's the result for packet tracer, its being dropped, that why i need to explicitly put an access list like this one:
access-list inside_access extended permit ip object-group Inside-PC any