Thursday, April 9, 2020

Cisco ISE 2.4 ARL check

Hello,

I'm looking for your help because my Google skill failed me and I can't seem to find any information about this in Cisco documentation.

We have a Cisco ISE deployment working fine with MAB for years and now the next logical step is using 802.1x with certificate.

Certificate means checking the CRL from the sub-CA delivering client certificats and I don't have any problem to configure this.

My issue is that the security team want us to check the ARL (Authority Revocation List) and I can't find a way to do this. Is it just checking the root CA CRL, is it an other option that my missing or is it just not possible ?

ps : I'm not a native english speaker so if you see any error feel free to correct me.



No comments:

Post a Comment