Guest

Preview Tool

Cisco Bug: CSCut16630 - ISE 1.3 https to sponsor portal using Admin cert not sponsor cert

Last Modified

Jul 11, 2017

Products (1)

  • Cisco Identity Services Engine (ISE) 3300 Series Appliances

Known Affected Releases

1.3(0.901)

Description (partial)

Symptom:
Admin ui: CertA (self signed)
Sponsor Portal: CertB (3rd party wild card)
 
On the sponsor portal settings in the Admin UI, fqdn set to: sponsor.example.com
 
In a browser, go to http://sponsor.example.com, get CertB and then redirection happens to the full url (with https and port etc) and same cert is presented again.
 
Go to https://sponsor.example.com, get CertA. Since self signed, accept warning, redirected to the full url (with port etc), get CertB.

Conditions:
Have different certs for Admin and Sponsor portals and use https to access the sponsor portal
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.