<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE deployment in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960561#M259872</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You sir, You are the man &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; 100x thnx.&lt;/P&gt;&lt;P&gt;Thoughts on secondary ise as monitor primary?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 25 Jul 2012 03:51:14 GMT</pubDate>
    <dc:creator>edondurguti</dc:creator>
    <dc:date>2012-07-25T03:51:14Z</dc:date>
    <item>
      <title>ISE deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960557#M259513</link>
      <description>&lt;P&gt;Hi guys. &lt;/P&gt;&lt;P&gt;Im trying to setup two cisco ise appliances. Primary and Seconadary. Everything is fine. I import the self signed cert from the secodary to primary and life is good. &lt;/P&gt;&lt;P&gt;But... I though if i make the secondary node PRIMARY only for MONITORING it would be better for cpu and all that. When i do that and go to DAsh Board i get an error saying untrusted cuz secondary node has a self signed cert. it wont let me see the dash board. Anyone had this problem?!?&lt;/P&gt;&lt;P&gt;I do not have a CA cert. maybe if i use verisign or godaddy certs this would work. We have those spare and they are cheap and those certs would help for clients not to see the continue anyway stuff and so on&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:20:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960557#M259513</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2019-03-11T02:20:00Z</dc:date>
    </item>
    <item>
      <title>ISE deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960558#M259587</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No need to worry it is because the reports that are displayed are from the secondary node so the browser rejects the content. As a workaround log back into the secondary node using the fqdn or the CN for the cert name and trust the self signed cert. Once you log back into the primary you will see the content displayed again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2012 03:41:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960558#M259587</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-07-25T03:41:15Z</dc:date>
    </item>
    <item>
      <title>Re: ISE deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960559#M259674</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi. Thnx. Im gna vpn in now. U still think&lt;/P&gt;&lt;P&gt;Its a good idea to have secondary node to monitoring?&lt;/P&gt;&lt;P&gt;What abt verisign cert?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2012 03:43:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960559#M259674</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-07-25T03:43:58Z</dc:date>
    </item>
    <item>
      <title>ISE deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960560#M259717</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The versign cert is a good idea to go with. Just remember that ISE does not support wildcard certificates so you will have to generate a CSR from ISE and will need it signed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Here is a sample of how to create a CSR - &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/ise/1.1.1/user_guide/ise_man_cert.html#wp1077292"&gt;http://www.cisco.com/en/US/docs/security/ise/1.1.1/user_guide/ise_man_cert.html#wp1077292&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2012 03:49:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960560#M259717</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-07-25T03:49:09Z</dc:date>
    </item>
    <item>
      <title>ISE deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960561#M259872</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You sir, You are the man &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt; 100x thnx.&lt;/P&gt;&lt;P&gt;Thoughts on secondary ise as monitor primary?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2012 03:51:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960561#M259872</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-07-25T03:51:14Z</dc:date>
    </item>
    <item>
      <title>ISE deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960562#M259970</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That is the way I usually deploy ISE for my customers, it helps like you mentioned balance the processing and cpu cycles between the two nodes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2012 03:57:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960562#M259970</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-07-25T03:57:27Z</dc:date>
    </item>
    <item>
      <title>ISE deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960563#M260069</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Alright thanks dude I really appreciate it &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Take care.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2012 03:58:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment/m-p/1960563#M260069</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-07-25T03:58:36Z</dc:date>
    </item>
  </channel>
</rss>

