Security

Explore the security forums and share your expertise about firewalls, email and web security, Identity Service Engine, VPN, AnyConnect and more.
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Browse the Community

Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace

31781 Posts

Network Security

Engage with peers and experts on network security topics such as FTD, FMC, FDM, CDO and ASA.

70359 Posts

Duo Security

Get started with or get better at administering and using Duo by interacting with peers and experts!

3196 Posts

Activity in Security

ISE CoA Reauth for Aruba 2530

Hello everyone, Does anyone know the attributes to configure to make the CoA type reauth work on an Aruba 2530 switch (16.11)? I managed to make the CoA Disconnect and port bounce working but I don't have the solution for reauth and I need it for pro...

CISCO WSA upgrade alert error

We have upgraded our S1000v(wsa ) from 14.5.1 to 14.5.2 and upgrade was successful but when we checked the alerts we found an alerts as An application fault occurred: ('heimdall/svc.py send_command|195', "<class 'heimdall.exceptions.unknownprocess'="...

DK9 by Level 1
  • 37 Views
  • 1 replies
  • 0 Helpful votes

VPN route-based unable to ping remote IP

Hi, I am currently encountering issue on route-based ipsec vpn. I cannot ping my remote IP also the remote tunnel. I have verified that there is no decap showing on packets. I already configured static route between each site and still unsucessful of...

migrate policies from SMA

Is it possible to migrate policies and its dependencies alone from am SMA to another. Since both SMA are running different version backup restore is not working.

manvik by Level 3
  • 152 Views
  • 3 replies
  • 0 Helpful votes

The operation took longer than expected.

I have just synchronized both Active Directory and Cisco ISE, ISE is using my server (AD) as an NTP server, everything is fine, but now I'm facing an issue "Status Summary: The operation took longer than expected. This may be caused by slow network c...

Jason2005 by Level 1
  • 192 Views
  • 9 replies
  • 0 Helpful votes

SSM ON-Prem TACACS+ and Clearpass

Hi,I am trying to configure TACACS+ on our SSM On-Prem server so that I am able to login on the Webinterface with my AD user. The TACACS+ configuration is done in Clearpass. And the test in the configuration window on the SSM server was successful.Bu...

Counterdoc_0-1713516283437.png Counterdoc_1-1713516355075.png Counterdoc_2-1713516408976.png

Trustsec Network Authorization not Working

Hi All,I am newly building trustsec in my environment,trying to add one of the switch under trustsec. Have configured Trustsec settings and COA on the ISE for the switch and added the appropriate aaa commands , radius servers and cts commands.But sti...

Resolved! ASA webdeploy AnyConnect 5.x linux image issue changing versions

I've noticed that as of Secure Client (AnyConnect) 5.x I get an error at the ASA CLI and ASDM when I try to change the Linux web-deployed AnyConnect client version. I have no issues with Windows or macOS AnyConnect clients. I've confirmed on ASA5585-...

cannot get to privileged enable mode via console

After searching through other posts, my config seems OK but still strange behaviourasa 9.20 running on FPWR chasisI cannot get in enabled mode when connecting to ASA via console.It used to work but stopped after I played (disable and restore) with aa...

kewwa by Level 1
  • 77 Views
  • 0 replies
  • 0 Helpful votes

Cisco ISE 3.2 OVA instable crashes

Hi  Everyone,Cisco ISE 3.2 keeps crashing several days after the installation.The installation has been done successfully without any problems.After a couple of days the installation is malfunctioning.After several installations and change of the sel...

Tom -K by Level 1
  • 69 Views
  • 1 replies
  • 0 Helpful votes

Resolved! Lock AnyConnect profile to specific certificate

I have multiple AnyConnect connection profiles for various remote users that provide access to different internal networks. The authentication method needs to be certificate only, but there doesn't seem to be a way to prevent an issued certificate ho...

Crag Muer by Level 1
  • 185 Views
  • 8 replies
  • 1 Helpful votes
Top Experts - Last 30 Days