Adding an additional CASE to an existing deployment of NAC OOB 4.7.3

Hi guys,.

If I am to add the certificate self-produced my new cases to the authorities of my CAM list existing certificate approved, it just will be added or it will replace the existing trusted certificate?

Hi Adrien,.

"Certification authorities" are the certificate of all the CAs root and also self signed certs of the trusts of the CAM case. So whenever you add a root/selfsigned certificate to this list, it is added to the list and does not replace any of the CERT. This link gives more information:

http://www.Cisco.com/en/us/docs/security/NAC/appliance/configuration_guide/45/CAs/s_admin.html#wp1092761

Kind regards

SOM

PS: Please mark the same question if it has been answered. Note the useful messages. Thank you

Tags: Cisco Security

Similar Questions

  • Adding a VDI induction to an existing deployment of vSphere

    We are vCenter Standard running in a clustered environment two blade HA/DRS vSphere. The cluster currently manages 15 VM, a combination of Windows and vApps VMware servers. Can we add ~ 6 VDI Office and/or a deployment of the that vCenter Server existing workspace / vSphere environment?

    Such a structure is not recommended for large scale / production indeed.

    But given the small scale given use case, you should be sure to move forward and avoid any involvement technique, provided sufficient resources CPU/memory/storage/and Ethernet is available and storage network/e/s bandwidths are not affected even under maximum use.

    In your case, I suggest to create pools of resources for vSphere and control resources shared with wisdom and deploy VDI virtual machines in a separate pool of resources. If there is a provision for the uplink network dedicated to the virtual machines, which should be put to use.

    Hope this helps

  • My Windows Live Hotmail account has been hacked and they have added an additional email address to recover passwords for security.

    How can I delete an email without sending a confirmation to this account?  My hotmail account has been hacked and they have added an additional email address to recover passwords for security.  To remove the address, the only apparent is to send a confirmation email to the address I want to delete.  It is counterproductive.  I have a password, but if they can obtain the information via another email address, my account is never going to be safe.   I got this address for a long time and do not want to lose.  However, he begins to feel that my only option is to go with another provider.

    Thank you

    original title: remove email address

    After all the Hotmail issues in the appropriate forum found here:
    http://windowslivehelp.com/

  • WISN additional subnet to an existing SSID

    Is it possible on WISN having additional subnet to an existing SSID, I'm asking this for a co-worker.

    David,

    Thanks for your kind words on the blog. IM glad I can help... If you wouldn't mind you can mark your thread as corn? It will help others when searching...

    Thank you!

  • I have an idea on the program application Adobe InDesign to increase the power of sale of Adobe InDesign, by adding an additional menu, with an additional menu that I hear more important for the future of printing.  How can I report directly to the

    I have an idea on the program application Adobe InDesign to increase the power of sale of Adobe InDesign, by adding an additional menu, with an additional menu that I hear more important for the future of printing.

    How can I report directly to the developer indesingn adobe...!

    You can create a feature here request:

    Feature requests/bug reports

  • NAC 4.8 adding to the case because of the cam

    Hi all

    I threw a half because of the NAC installation and this is my first deployment of the NAC, I feel a little overwhelmed.

    I read the installation guide for the devices from the back to the front, but I have a problem after the addition of a case to the cam.

    I am able to add the case to the cam successfully, but almost immediately, the case and the cam can no longer ping between them in the cli.

    the States of event logs that the heap in connected to the cam, but newspapers then an error that the cam is unable to push the registration to the CAs. from this point, I get several questions of event log indicating that the case is out of sync

    I copied a part of the nac_manager.log which show the connection process:

    2012-03-09 22:33:06.037 + 1100 [TP-Processor24] INFO com.perfigo.wlan.web.admin.SecureSmartServer - SSS - connect: get the new connectorClient of 10.0.0.100

    2012-03-09 22:33:36.433 + 1100 [TP-Processor24] INFO com.perfigo.wlan.web.admin.SecureSmartManager - SSM - addSecureSmartServer: sleep for 2 seconds to click to restart

    2012-03-09 22:33:38.434 + 1100 [TP-Processor24] INFO com.perfigo.wlan.web.admin.SecureSmartManager - SSM - addSecureSmartServer: sleep for 2 seconds to click to restart

    2012-03-09 22:33:40.436 + 1100 [TP-Processor24] INFO com.perfigo.wlan.web.admin.SecureSmartManager - SSM - addSecureSmartServer: sleep for 2 seconds to click to restart

    2012-03-09 22:33:42.438 + 1100 [TP-Processor24] INFO com.perfigo.wlan.web.admin.SecureSmartManager - SSM - addSecureSmartServer: click on the STOPPED state

    2012-03-09 22:33:42.617 + 1100 WARN [TP-Processor24] com.perfigo.wlan.web.admin.SecureSmartPublisher - NAC Server 10.0.0.100 is out-of-sync.

    2012-03-09 22:33:42.702 + 1100 [TP-Processor24] ERROR com.perfigo.wlan.web.admin.FilePublisher - FilePublisher - writing: setPath failed...

    2012-03-09 22:33:42.793 + 1100 [TP-Processor24] ERROR com.perfigo.wlan.web.admin.FilePublisher - FilePublisher - writing: setPath failed...

    2012-03-09 22:33:42.833 + 1100 [TP-Processor24] ERROR com.perfigo.wlan.web.admin.SecureSmartPublisher - SSM publishAccess: impossible to publish the comments sign-up page

    2012-03-09 22:33:42.872 + 1100 [TP-Processor24] com.perfigo.wlan.jmx.admin.FileUtil - FileUtil - readFile INFO: /perfigo/control/conf/os-detection.fp

    2012-03-09 22:33:42.887 + 1100 [TP-Processor24] ERROR com.perfigo.wlan.web.admin.AccessConf - cannot activate ETH1 on 10.0.0.100

    2012-03-09 22:33:42.888 + 1100 [TP-Processor24] ERROR c.perfigo.wlan.web.admin.AdminIpAccessInfoManager - AIAIM - publishAccess: failure

    2012-03-09 22:33:42.888 + 1100 [TP-Processor24] INFO com.perfigo.wlan.web.admin.ServerConf - SC - stopOobSWissServer()

    2012-03-09 22:33:42.905 + 1100 [TP-Processor24] INFO com.perfigo.wlan.web.admin.SecureSmartManager - 10.0.0.100 added to Clean Access Manager

    2012-03-09 22:33:46.922 + 1100 [pool-1-thread-1] ERROR com.perfigo.wlan.web.admin.ConnectorClient - Exception of Communication: can't connect with the exception of server access own creation connection to: 10.0.0.100. nested exception is:

    java.net.SocketTimeoutException: connect timed out

    2012-03-09 22:33:46.922 + com.perfigo.wlan.web.admin.SecureSmartPublisher - SSP - connectAndPublish 1100 [pool-1-thread-1] ERROR: could not connect to 10.0.0.100

    2012-03-09 22:34:01.614 + 1100 [pool-1-wire-2] ERROR com.perfigo.wlan.web.admin.ConnectorClient - Exception of Communication: can't connect with the exception of server access own creation connection to: 10.0.0.100. nested exception is:

    java.net.SocketTimeoutException: connect timed out

    2012-03-09 22:34:01.615 + com.perfigo.wlan.web.admin.SecureSmartPublisher - SSP - connectAndPublish 1100 [pool-1-wire-2] ERROR: could not connect to 10.0.0.100

    2012 03-09 22:34:01.627 + 1100 [pool-1-wire-2] WARN com.perfigo.wlan.web.admin.SecureSmartPublisher - NAC Server 10.0.0.100 is out-of-sync.

    2012-03-09 22:34:05.628 + 1100 [TP-Processor19] com.perfigo.wlan.web.admin.ConnectorClient - Exception of Communication ERROR: could not connect with the exception of server access own creation connection to: 10.0.0.100. nested exception is:

    java.net.SocketTimeoutException: connect timed out

    2012-03-09 22:34:20.618 + 1100 [pool-1-wire-3] ERROR com.perfigo.wlan.web.admin.ConnectorClient - Exception of Communication: can't connect with the exception of server access own creation connection to: 10.0.0.100. nested exception is:

    java.net.SocketTimeoutException: connect timed out

    I've followed all of the installation guides recommendation of the disconnection of the interface untrust on the CASE and there is no HA configuration currently...

    What I don't understand is the inability of webcams and cases of ping each other, but they can ping other devices on the network. The SCA and the cam are in different VLANS.

    Any assistant to a guru of the NAC would be greatly appreciated.

    Thank you

    JS

    Thanks a lot Man, saved you my day

  • Error adding new CAP3702I-B of the existing controller

    Need of advice and direction. I am relatively new to the world of Cisco WLC, but I know the basics.

    We have a 5508 running 7.6.130.0.

    I have 11 of CAP2702I and LAP1142N 18. It is great to all workers.

    We just bought a bunch of AIR-CAP3702I-B I think I can just plug these and they'll autoconfig, right? I look at the CLI through the console and see mistakes like the capwap process tries to work. "The big East"download of this version is not allowed when the access point is configured at the domain - B."

    Best I can tell, I need to update the WLC software, but I'm afraid I might lose support for older WAP with the latest version of the software. True?

    Thank you!

    -John O

    As you have discovered an upgrade is needed to support the new B - regulatory field, which means that you need at least 8.0.132.0.

    In general, you have reason to be concerned by the older APs are no longer supported, so always check the compatibility matrix before the upgrade:

    http://www.Cisco.com/c/en/us/TD/docs/wireless/compatibility/matrix/Compa...

    In your case, even the last 8.3 supports still APs 2700 and 1140, so you should be good there.

    Make sure your 5508 has appropriate licenses to support additional access points.  If you plug in your switch it has configured the same (e.g., trunk) as the existing access points and your discovery method WLC is compatible (option DHCP 43 or other), it should associate.

  • Adding 1142 points of access to existing wireless network

    Is there that problems with the addition of 1142 points of access to areas that have existing 1242 and 1232 access points?  I have heard and read that the 1142 provide improved thanks to the function «clientlink» performance  The clients that we have are for the most part G, B and, N not much yet.  We have a few localized areas where users report a problem of intermittent coverage and is considering to replace an access point or two in the areas with the 1142.  For all new areas I intend to deploy the 1142 only.

    Thank you

    Al

    No problem at all with the mix don't except that 802. 11 b / g and a customers will decrease the performance of the network. The 1142 s will have their talk with 54 Mbps and 11n clients are also suffering from their presence.

    But nothing too disturbing.

    Nicolas

  • Adding an additional PLP1200

    Hello

    I use a pair of PLP1200 powerline adpaters to provide a decent connection for a superior room. If I buy a singular unit to another room can I plug the existing that is connected to the router and still have the original room attached, or do I need a pair?

    Thank you very much

    Steve

    Thanks for the replies everyone. My additional PLP1200 arrived last night, and after performing a reset on it has synchronized with my other PLP. Everything works as expected.

    See you soon

    Steve

  • Help!  Can I add an additional field to an existing PDF form?

    I have an existing PDF I created from a Word Doc and have made this PDF file in a form with many drop-down list fields, specially formatted fields, fields, ect.

    Now I need to add another field of this form (i.e. a table "office use only"), however I don't want to do it in the Word Doc, convert to PDF and then having to recreate the PDF form from scratch, I did a huge amount of work, the creation of all fields in the form.

    Is there a way I can make the necessary changes to my Word Doc, covert, he to a new PDF and then merge to my existing PDF, while keeping all the form fields is just to add an additional field that and as I can then turn it into form fields?

    I already tried - to create the table in Word, print screen, save it in JPEG format and insert into my existing PDF.  The picture is not as crispy as it should be and looks like a ' add to ' I don't really want to.

    The table I want to insert has formatting special meets a company style guide, so I really need to create it in Word to keep the required formatting.

    HELP PLEASE!

    Hi jlgrobbelaar,

    Yes, you can use the Replace Pages to keep all the form fields and scripts, as they are now in your original PDF.  Here is a tutorial on the use of Pages - replace

    https://acrobatusers.com/tutorials/how-to-replace-the-background-pages-in-a-PDF-form

    If you add your new field/area to the form results in changes of layout for the form then you may need to move the fields in place, but it's better than having to add everywhere.

    Hope this helps,

    Dimitri

    WindJack Solutions

    www.pdfscripting.com

  • Adding a new host to the existing cluster

    Hi all

    The existing cluster has a connected SAN. Should what precaution I look forward to add a new host to the existing cluster? I did research that we should physically disconnect the HBA before adding, I don't know what it is to be honest.

    Any help / idea would be highly appreciated.

    Concerning

    VDZ wrote:

    Thanks a lot, guys

    Please, how can one more thing I change the host name?

    Appreciated all your help

    Kind regards

    Hello

    Once the host is already in the vCenter inventory, you cannot change it, you must disconnect host to vCenter, delete the inventory and add it again using a different name,.

    for example, if you specify IP during the connection wizzard, it seems in vCenter inventory under an IP address, if you want it to be visible as a hostname or a domain FULL, during the wizard name you used its hostname or FULL domain name

    See you soon

    Artur

    Visit my blog

    Please, do not forget the points of call of the "useful" or "correct" answers
  • Adding channel CJCS virtual/physical to existing task

    Hello

    I have a NI 9211 TC modules that I use to acquire temperatures through LabVIEW 2013 SP1, I have an existing task created in MAX.  I want to follow the CJC temperature sensor as well.  After looking at several positions, I discovered how to assign the physical channel hidden in a virtual channel in LabVIEW and then view the CJC value.  BTW...  Where there is under good which shows how to do this for the cDAQ series... find the 'AI Temp sensor built' is not clear (look under "analog EntrΘe, more").  But that part works now.

    -->, I want to add this channel CJC to my existing job, but I get an error.  See CJC1.vi

    Or, as an alternative, I would like to acquire the CJC temperature and acquire temperatures 8 other channels and then combine them somehow for display, recording, etc.

    Note: I want to keep the data in the format of the waveform, so they work as part of a broad data acquisition program that I have.  And I want to continue to use the existing task as it contains the calibrations (via the wizard of Calibration MAX).

    Here is the error that occurs when I run CJC2.vi with the active disabled code block.  (sometimes not is displayed after you press the Stop button)

    Error-200072 occurred at .vi:7050002 DAQmx Create Channel (I-temperature-built-in sensor)

    Possible reasons:

    Duplicate the layers in the list of physical channels are not supported by this unit.

    Channel name: _cDAQ3Mod1/_cjtemp
    Dual channel: cDAQ3Mod1/_cjtemp
    Physical channel: _cjtemp
    Feature: cDAQ3Mod1

    Name of the task: task of DAQ3

    Attached files:

    CJC1.VI<-- shows="" combined="" code="" and="" it="" throws="" the="">

    CJC2.VI<-- shows="" how="" i="" acquire="" and="" display="" data="" from="" 8-channel="">

    CJC3.VI<-- shows="" how="" the="" cjc="" temperature="" works="" by="">

    Now, how to combine the two?

    Thanks for the help,

    Derek

    Knowledge base seems to be a little confused right now because it only shows the node property for channel playback of strength. It's the correct property to read from a channel of CYC while you use it, but we must also set the CJC channel as an active channel first. The following snippet is the right way to do this in the context of this thread.

    Please note that you must use the built-in CJC source for that to be applicable.

  • Adding an additional hard drive

    Have an emachine with windows vista upgrade, I put an extra GI on my PC to make 1.5 G. I want to add an additional hard drive. I now have a120GB hard drive. I have an another emachine with a 160 GB hard drive, but my problem is the 120 GB is 32 bit and the 160 GB is 64-bit. My question is that I can use the disk 160GB of hard drive without any problem, most 120 GB hard drive?

    The drive works perfectly.  Any hard drive can operate in 32-bit and 64-bit systems. Boulder computer Maven
    Most Microsoft Valuable Professional

  • Adding a NETWORK card to an existing server of BB

    I just added a 2nd NIC to my long-term BB Server (v4.6 on Win2008R2). I added a separate management and become LAN to my company and BB need to monitor the speed on that subnet. I stop, added the NETWORK card and reboot, BB server does not start - gives a license error - 2. When I turn off the new NIC, BB server starts. When I re-enable the NETWORK card it does not start. I can disable the NETWORK card, start server BB, and then re-enable the NETWORK card and BB works as I would like, but when the server restarts, BB will not work.

    I've already messed with NIC link and changed the old NIC to get a higher priority than the new one, but BB continues to operate as stated above.

    ....

    Do I really need a new license file when adding a NIC or there is something simple that I'm missing?

    Jim Graczyk

    PS - I know that this is probably a question for a DELL/quest/BigBrother assistance team, but I'm confused out of proportion about how we'd actually do that. I was lost when we just had to deal with the quest nonolithic support system. Now that DELL has added that it is much less clear. I posted something about licensing, but I think it was a mistake.

    Any help would be appreciated.

    Jim

    Hi Jim,.

    Send your linfo output to support of BB. Cut it a new license for you.

    Kind regards

  • Adding an additional hard drive to a p2-1334 HP

    Never thought I would hear myself say that 500 GB was insufficient, but it is.

    Can I add an extra terabyte as a slave to this PC?

    Thanks in advance for any help

    -Greg

    Your desktop HP p2-1334 has only two SATA ports and no physical space in the case of 2nd hard drive. Short answer is a resounding no you can, however, replace the current 500 GB drive with a greater capacity. 1 TB to 2 TB

    Please send BRAVO

Maybe you are looking for

  • After you have installed Windows 8.1 Addons settles TB 24.3.0

    I had Windows 7 and installed ProfiledSwitcher without any problem. Then, I got a new computer with WIndows 8, which I've updated recently to 8.1. I noticed that I had no addons, so I downloaded ProfileSwitcher, went to 'Install from File', clicked o

  • Satellite C50 - cannot find assistance office

    I just started using my new laptop and searching the online manual, said that there is something called Desktop Help, and I'm not. Where have I made a mistake? Thank you

  • Receive the error message when you try to install Toshiba Power Saver

    Toshiba power saver recently stopped working - I deleted and it redownloaded this site, now whenever I try to start the installation, I get a message "Cannot be the computer id" and stops the installation. For the first time post here so if I'm on th

  • Trading of macbook

    Hello! I just bought the new macbook 12 "(3 semaines), & I don't really like - it's too small and uncomfortable to work with." Do you know if I can pass to another model? If it is positive, what should I do? I would really appreciate your response, i

  • Internet tv windows media center selection

    I have Windows 7 Home Premium 64 bit on a new Asus laptop and cannot have internet key TV in Windows Media Center. I tried;uninstalling and reinstalling wmc via remove windows components.update via the command prompt.Download the parameter button {wh