Cisco Cisco 3365 Mobility Services Engine Release Notes

Page of 40
27
Release Notes for Cisco Mobility Services Engine, Release 8.0.110.0
OL-32458-01
  Operational Notes for Mobility Services Engine
Operational Notes for Mobility Services Engine
This section lists the operational notes for the Mobility Services Engine and contains the following 
topics:
Resolution to NMSP/SHA2 keyhash Mismatch Issue
MSE 8.0 by default supports SHA-2 keyhash algorithm for peer authentication with Cisco WLC 8.0 
during the SSL handshake. Prime Infrastructure 1.4.2 and 2.1 supports only SHA-1 AP (or MSE) 
Authorization template when synchronizing Cisco WLC with the MSE. This causes keyhash mismatch 
issue because the PI and MSE uses different keyhash algorithm on Cisco WLC 8.0. An option is added 
to the Advanced Parameters page in the MSE user interface (UI) to allow the user to force MSE 8.0 to 
use SHA-1 keyhash algorithm.
Follow these instructions to configure SHA-1 Cipher:
1.
Launch the MSE admin UI by typing https://mseip/mseui/app in the web browser.
2.
Click Configuration.
3.
Choose System > Advanced Parameters from the left sidebar menu.
4.
Select the Enable Use of SHA-1 Ciphers check box (see 
).
5.
Click Save.