Cisco :: WS-SVC-SSL-1-K9 / ACE And SSLM Support Subject Alternative Name (SAN)
Jun 5, 2011
I want to migrate Exchange server to Exchange 2010, I would like to know if ACE and SSLM support Subject Alternative Name (SAN).
1. Can the current CSM (WS-SVC-SSL-1-K9) support SSL certificates that have Subject Alternative Names? I.e. a certificate that has both of these names in it.
a. exchange.ww.edu
b. legexchange.ww.edu.
2) Can the new ACE( ACE20-MOD-K9) support SSL certificates that have Subject Alternative Names? I.e. a certificate that has both of these names in it:
a. exchange.ww.edu
b. legexchange.ww.edu
View 1 Replies
ADVERTISEMENT
Sep 6, 2012
I generated a wildcard certificate for my company type *. [URL] in a CSS 11501. For the site [URL] worked fine, for the site [URL] didn't worked. I read on the web that should generate a wildcard certificate with subject alternative names. Is it possible in CSS? how can I do it?
View 5 Replies
View Related
Oct 15, 2012
I have a Dual-Hub DMVPN with PKI dep[oyment infrastructure and with 2 Hub on Cisco 1811 and Spokes on Cisco 1841. When I enter the 'subject-name' parameter (pki trustpoint configuration mode) on a Spoke routers, one of two Tunnel is up, but the second Tunnel is not up. ISAKMP-negotiation select the rsa-sig-mode is correctly. If I select pre-shared-mode or if i remove 'subject-name' from Spokes, DMVPN work is fine!
Configuration example:
1. HUB:
--------------------------------------------------------------------------------
Cisco IOS Software, C181X Software (C181X-ADVENTERPRISEK9-M), Version 12.4(15)T15, RELEASE SOFTWARE (fc3)
Technical Support: [URL]
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Tue 08-Mar-11 06:09 by prod_rel_team
[code].....
View 14 Replies
View Related
Sep 25, 2011
I have a Dual-Hub DMVPN with PKI dep[oyment infrastructure and with 2 Hub on Cisco 1811 and Spokes on Cisco 1841. When I enter the 'subject-name' parameter (pki trustpoint configuration mode) on a Spoke routers, one of two Tunnel is up, but the second Tunnel is not up. ISAKMP-negotiation select the rsa-sig-mode is correctly. If I select pre-shared-mode or if i remove 'subject-name' from Spokes, DMVPN work is fine!
In what there can be a problem?
Configuration example:
1. HUB:
crypto pki trustpoint TRUSTPOINT-CA1
enrollment mode ra
enrollment url http://.../certsrv/mscep/mscep.dll
password ...
[ code]....
View 17 Replies
View Related
Feb 8, 2012
Is there any way to change the subject line of the email alerts that are sent? Right now mine are coming with the MAC address, date and time. I would like to remove the MAC address and date and time so that I can sort them into one folder when I sort my email by subject.
View 7 Replies
View Related
Mar 30, 2011
We have an ASA5510 with a backup ISP connection protecting our corporate network. I also have a mail server and I would like to route SMTP traffic over the backup network. I realize that the ASA5510 does not support PBR, but I also know that I can use static NAT rules as a workaround to direct specific types of traffic over a particular interface (e.g. "static (outside,inside) tcp 0.0.0.0 www 0.0.0.0 www netmask 0.0.0.0" and "static (backup,inside) tcp 0.0.0.0 smtp 0.0.0.0 smtp netmask 0.0.0.0"). is it possible to use something similar to force a particular host to use a specific interface? I have tried to make this work on my own without success. Is it even possible?
View 5 Replies
View Related
May 3, 2013
I need 891 SEC router. I think this comes with advanced IP services.What I have is 1921, with IP Base.Can I upgrade 1921, so it will become alternative to 891 SEC ?
View 1 Replies
View Related
Mar 13, 2012
i have met connection problems (mainly with xp)where a laptop always have problem connecting to a secured wifi connection that has higher encryption than wep (wpa - wpa2).In general after a few tests . I am almost sure that it is xp's Wireless Zero Configuration's problem.I am wondering if there is alternatives to WZC that does not require their own brand's device to run a 3rd party Wireless Connection Manager.I am not looking for a model specific software either ,
Examples are:
toshiba connect me
tp link connection utility
intel's mobile
View 11 Replies
View Related
Sep 10, 2012
Our company is starting to open a lot of small mpls sites across the nation. By small I mean less than 10 users, voip, 1 dc, that's it. Instead of getting the usual 2901+2960 combo, I'm interested in finding less expensive solutions. Maybe an L3 switch like a 3750? These are temporary sites so management is fine with looking into used, non smartnet covered gear?
View 7 Replies
View Related
Apr 7, 2013
From what I can find the ASA does not support policy routing.
I have two VLANS that need to go to the same destination but different routes. Anyway to accomplish this on the ASA?
View 1 Replies
View Related
Sep 4, 2012
As per me 24x7 network monitoring service is one of the best technique.Even we can protect large scale or enterprise level network with unwanted attacks or virus. Alternative better option of Network Monitoring Service
View 1 Replies
View Related
Sep 14, 2012
I am in need of a Static IP alternative (My ISP chooses not to offer the service). I do not need the Static IP to access my own devices. I need to access other networks as a "trusted" user.
View 10 Replies
View Related
Jan 23, 2012
I found the following on the link bundling page for the 12000 series router:"In both EtherChannel and POS channel link bundles, the Link Aggregation Control Protocol (LACP) for signalling and the 802.3ad protocol for automatic negotiation of the channel are not supported. This means that in order for the channel between two routers to be active, you must disable signaling on switches (such as the Cisco 6500/7600 Series) in the channel, and configure the switches in ON mode."
So, my question is, if lacp isn't supported, is there another way to mimic its functionality on a 12000 series router? I want to connect 2 routers together with a port channel that will pass through our layer 2 network, and I want to make sure that any failures in the path will shut down the affected link on both routers.
View 2 Replies
View Related
Mar 26, 2012
Cisco announced EOL for ws-x6148A-GE-45AF line card and proposed WS-X6148E-GE-45AT. However this card seems not to be supported by the SUP2T-10G supervisor. Which alternative card should I take for this EOL line card, or can I use the proposed line card (use extra daughter card DFC4)?
I'm looking for an alternative line card for the 650x-E chassis with Supervisor 2T iso 6148-GE-45AF
View 7 Replies
View Related
Dec 5, 2012
I have a new ACS 5.3 configure and a ASA5550 to authenticate VPN users using a remote LDAP server. Once I try to authenticate the users with the ACS it gives me the error message "22056 Subject not found in the applicable identity store(s)."
I checked out the documentation and have already configure the Identity store sequences to redirect everything to the LDAP server, I also did the Bind test and it says that is ok, but I still have the same problem.
I validated the Access Policies Menu, and tried to create a new Service Selection Rules, but whet I get to the option of modifying the Identity option I get the error: "This System Failure occurred: {0}. Your changes have not been saved.Click OK to return to the list page. " and I'm not able to modify the identity, not in this new option I created, nor in the ones already created in the ACS.
View 8 Replies
View Related
Oct 6, 2012
I have two ACS v 5.2 (primary and secundary) and some users are in the internal stor and the others are in the AD.The local site topology is like this:
PC - AP - WLC - ACS - AD
Authentication method is PEAP(EAP-MSCHAPv2) and all user have the certificate company installed. The OS in the client users is Windows 7.Users was working fine but some users reports intranet disconnections. I see in the ACS log many "22056 Subject not found in the applicable identity store(s)." and "24415 User authentication against Active Directory failed since user's account is locked out" alarms.I believed it was because user wasn´t in the AD data base, but some times the same user is authenticated successfull and other i see the "22056...." or "24415...." alarms.
I switched the role for ACS primary to works as secundary and we see the same alarms.
View 2 Replies
View Related
Jul 10, 2013
Mine studio 1555 with intel core 2 duo P8700 [URL] processor and intel wifi 5100 agn card stopped connecting to router since last week. After searching a lot I found out that the Intel has stopped supporting 5100 for windows 8. Is there any way possible to use the same adapter with compatibility drivers on windows 8?? I have searched a lot but couldn't find much. All the new intel cards like "Intel Centrino Wireless-N 2200", n6300 are of 22nm while my processor is of 45nm. So will the newer card work with my processor.
View 1 Replies
View Related
Jul 2, 2013
what other cards are compatible with XPS 13 Ultrabook? Like so many people, I have been having a problem with my wifi when the computer is used a little far from the router, and thinking about buying a new wifi card for a replacement (which is silly, and I shouldn't have to do, given my computer is brand-new and cost more than £1000, I know... but I don't seem to have much choice). I've tried everything that has been suggested in the Dell forums, and elsewhere, including those on the Intel site. But nothing has improved my connection even a bit.I have Windows 8 (64-bit). And it currently has an 'Intel Centrino Advanced-N 6235' wifi card that came with it.
View 2 Replies
View Related
Feb 16, 2011
can wireless router support up to 100 user including support network printer
View 1 Replies
View Related
Nov 6, 2011
I have confirmed this with TAC and also been told that a NCS MR2 is going to be coming soon and will have support for the 7.0.220.0 code.
View 3 Replies
View Related
Aug 27, 2012
I need to monitor SCE8000 alarms, but LMS does not support this product. My other Cisco products are managed by LMS. get visibility of SCE8000?
View 1 Replies
View Related
Jan 26, 2012
can we install the ISO LMS 4.1 directly on a UCS platform?What platform UCS is supported?Do you have install experiences you can share?Is the ISO LMS 4.1 a Linux implementation?
View 6 Replies
View Related
Dec 9, 2012
Cisco 2960 Optimization
The current software version is as follows:
System image file is "flash:c2960-lanbase-mz.122-35.SE5/
I WOULD LIKE TO KNOW THE UPGRADE PART TO BE ABLE TO ACCOMMPLISH THE FOLLOWING:
1. Deploy IOS Code containing Crypto ( K9 Image) features and reload the device with the new IOS
2. Generate RSA KEY on the network device + domain name.
3.set limit per MAC@to 4
4.set port to be protected instead of shutdown when limit exceeded
5.enable err disable recovery for link-flap events
6. set up required limits for port security settings preserving current NOD exception
7. i would like to know if i need to upgrade the IOS to achieve this. ?
View 1 Replies
View Related
Sep 19, 2012
I am not very familiar with the NM-8A/S module. There is a requrement to terminate a 2 MB link on 1 port of this module on a 2620 router. According to my limited knowladge about this interface it doesn't support more than 128 kb/s . if I can configure for 2 Mb
View 3 Replies
View Related
Feb 12, 2013
Does cisco 887 support anyconnect vpn access?
View 1 Replies
View Related
Sep 28, 2011
I have a 2651 IOS ver 12.2(8) T5 and I installed an ATM-T1 4T1-IMA WIC, but the router will not recognize it. Do I need a newer IOS or is there a command to have the router recognize this WIC? Currently it is connecvted to our ISP via the serial connection, but they want to go to an ATM protocol for better video performance.
View 6 Replies
View Related
Aug 11, 2012
Does Cisco 861 have EIGRP support?
View 1 Replies
View Related
Mar 24, 2012
I am trying to do Leap and Eap-TLS together. How can I write a policy in ACS that would check for identity before choosing the right profile for the request. ACS 5.2 does not support Native eap-tls. I am assuming I will be using Idenity username for Leap and Predefinied Certificate profile identity for eap-tls.
View 1 Replies
View Related
Jun 3, 2013
I found following spec in 8510 controller data sheet
Interfaces and Indicators
#• 2 x 10 Gigabit Ethernet interfaces
#• Small Form-Factor Pluggable (SFP) options (only Cisco SFPs supported): SFP-10G-SR
#• LED indicators: Network Link, Diagnostics
#• 1x Service Port: 10/100/1000 Mbps Ethernet (RJ-45)
However, I need Long Range SFP, i.e SFP-10G-LR
View 6 Replies
View Related
May 1, 2012
I have WLC 520 with software version 5.2.178. Currently we purchased Cisco AIR-LAP1131G access points and tried to join to WLC 520 but it is not joining. My question is WLC 520 will support 1131G access pont or not.?
View 1 Replies
View Related
Dec 20, 2012
I got a Cisco 870 router. running C870-ADVSECURITYK9-M), Version 12.4(15)T7, does this support two link from different ISP.
View 2 Replies
View Related
Jan 9, 2013
i just came to know Assurance feature license doesn't come for free when upgrading from LMS4.2 or NCS1.1. It has to be purchased. Before buying this license, i would like to know if IPv6 netflow is supported.
View 0 Replies
View Related
Oct 18, 2011
We have 881 routers and are planning on testing out some WAN optimizing hardware, we're told that our router needs to support PBR and WCCP protocols. Will this router handle it?
View 3 Replies
View Related