<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Primary administration ISE nodes failed in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244743#M127106</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For your first question which is :-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Q:- If the Administration &amp;amp; monitoring node failed, are the&amp;nbsp; authentication, authorization and posture still can be running well on&amp;nbsp; the client ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ans:- Yes, the PSN's will still be running to their full functionality and would be doing the work of policy enforcements.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For your second query please find the link below which would help in ssolving your query:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/ise/1.0/install_guide/ise10_deploy.html"&gt;http://www.cisco.com/en/US/docs/security/ise/1.0/install_guide/ise10_deploy.html&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 22 May 2013 03:29:10 GMT</pubDate>
    <dc:creator>harvisin</dc:creator>
    <dc:date>2013-05-22T03:29:10Z</dc:date>
    <item>
      <title>Primary administration ISE nodes failed</title>
      <link>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244741#M127099</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm going to implement 3 ISE with destributed deployment, 1 ISE will configured as Administration &amp;amp; Monitoring node, and the others as dedicated Policy Service node.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My questions are :&lt;/P&gt;&lt;P&gt;1. If the Administration &amp;amp; monitoring node failed, are the authentication, authorization and posture still can be running well on the client ?&lt;/P&gt;&lt;P&gt;2. Can we promote the dedicated Policy Service Node as&amp;nbsp; the new administration &amp;amp; monitoring nodes ? If can, how the procedure for promoting it? it's just as simple as promoting the secondary nodes (in case we have primary and secondary nodes) or there is others effort, such as must restoring the database or etc?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Rian&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 03:26:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244741#M127099</guid>
      <dc:creator>Rian Rosidiyana</dc:creator>
      <dc:date>2019-03-11T03:26:24Z</dc:date>
    </item>
    <item>
      <title>Re:Primary administration ISE nodes failed</title>
      <link>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244742#M127105</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;BR /&gt;&lt;BR /&gt;When the primary administration node fails. The psns will still continue to function and enforce policies.&lt;BR /&gt;&lt;BR /&gt;Since you have a single administration node and if the that node has to be rebuilt, all other nodes will also have to be reset to factory then re registered once the primary node is ready again.&lt;BR /&gt;&lt;BR /&gt;In that case you can open a tac case yo have them assist in pulling your database from one of the psn nodes.&lt;BR /&gt;&lt;BR /&gt;As always this is my observations and what I would do if I was in the situation, we can wait for a cisco engineer to respond or you can post this question in a tac case to make sure there isn't an upcoming feature which addresses this scenario.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Sent from Cisco Technical Support Android App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 May 2013 12:57:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244742#M127105</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2013-05-16T12:57:55Z</dc:date>
    </item>
    <item>
      <title>Primary administration ISE nodes failed</title>
      <link>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244743#M127106</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For your first question which is :-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Q:- If the Administration &amp;amp; monitoring node failed, are the&amp;nbsp; authentication, authorization and posture still can be running well on&amp;nbsp; the client ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ans:- Yes, the PSN's will still be running to their full functionality and would be doing the work of policy enforcements.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For your second query please find the link below which would help in ssolving your query:-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/ise/1.0/install_guide/ise10_deploy.html"&gt;http://www.cisco.com/en/US/docs/security/ise/1.0/install_guide/ise10_deploy.html&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 22 May 2013 03:29:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244743#M127106</guid>
      <dc:creator>harvisin</dc:creator>
      <dc:date>2013-05-22T03:29:10Z</dc:date>
    </item>
    <item>
      <title>Primary administration ISE nodes failed</title>
      <link>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244744#M127116</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Tarik and harvincer,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for your response.&lt;/P&gt;&lt;P&gt;After re read again about geployment guide and ISE user guide, for my question no.2 , i found out that if my administration node failed, i have to rebuilt the system (reregister PSN). and don't forget to always backup ISE, because it's very important when we've lost all administration nodes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_backup.pdf"&gt;http://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_backup.pdf&lt;/A&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 22 May 2013 04:12:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/primary-administration-ise-nodes-failed/m-p/2244744#M127116</guid>
      <dc:creator>Rian Rosidiyana</dc:creator>
      <dc:date>2013-05-22T04:12:19Z</dc:date>
    </item>
  </channel>
</rss>

