Guest

Preview Tool

Cisco Bug: CSCvu93810 - SSL Intercept needs documentation for customer reference

Last Modified

Jul 21, 2020

Products (1)

  • Cisco DNA Center

Known Affected Releases

DNAC-Wolverine DNAC1.3.3.5

Description (partial)

Symptom:
Cisco DNA Center upgrades may fail due to SSL intercept, resulting in the following error in the catalogserver logs.

$ magctl service logs -r -t100 catalogserver | lql | grep 509  
| 14 | 2020-06-29 15:50:02,464 | DEBUG | 41269 | Thread-16 | 139621434373888 | root | DockerProxy.py:225 | Error response from daemon: Get https://registry.tesseractcloud.com/v2/: x509: certificate signed by unknown authority |
Error response from daemon: Get https://registry.tesseractcloud.com/v2/: x509: certificate signed by unknown authority
Error response from daemon: Get https://registry.tesseractcloud.com/v2/: x509: certificate signed by unknown authority
Error response from daemon: Get https://registry.tesseractcloud.com/v2/: x509: certificate signed by unknown authority

Conditions:
This was observed in a user's effort to upgrade Cisco DNA Center from 1.3.3.5 to 2.1.1.0.  The user's intercept replaced the certificate resulting in the error.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.