Guest

Preview Tool

Cisco Bug: CSCuq59126 - ISE Dist Deployment 1.2 - PSN cant delete/import cert after cert expires

Last Modified

Jan 23, 2020

Products (1)

  • Cisco Identity Services Engine

Known Affected Releases

1.2(0.899)

Description (partial)

Symptom:
Error Log: "Internal error - Please ask your Administrator to review the error logs."

When ever we try to delete a certificate that is expired we get the error above.

We also see this when we try to install a new certificate.

We see this behavior in a distributed deployment on the PSN nodes only. the Admin nodes will allow deletion and re-adding of the certificates.

Business Impact:

PSN nodes HTTPS certificate showing as expired.

Conditions:
ISE Version:  1.2  Patch: 8  Distributed deployment 

1-PAP

1-MnT

2-PSNs - Have certificates that has HTTPS certificate that has already expired.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.