cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
443
Views
0
Helpful
1
Replies

Anyconnect: Issue DTLS 1.2

jds5
Level 1
Level 1

Hello,

We're having issues with our new Firepower 2100 when MACs try to connect because DTLS 1.2 does not pass.

A comparison analysis of MAC Anyconnect 4.9.04043 agents in TLS and DTLS mode shows that the Cypher suites are not identical.

The TLS Cypher list covers 22 Suites and the DTLS List comes down to one suite which is amazing.

Have you ever noticed this scenario?
Is there a way to increase the cypher suite list in MAC Agent, please?

BR,

 

 

1 Reply 1

https://integratingit.wordpress.com/2021/01/28/secure-ftd-tls-ciphers/

Since you use FMC you can add more cipher to dtls match what you see in MAC.

Check link above