<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE LDAP Communication to Secondary AD in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3898318#M471057</link>
    <description>&lt;P&gt;Such traffic is for AD domain and forest discovery.&lt;/P&gt;</description>
    <pubDate>Fri, 26 Jul 2019 13:58:27 GMT</pubDate>
    <dc:creator>hslai</dc:creator>
    <dc:date>2019-07-26T13:58:27Z</dc:date>
    <item>
      <title>ISE LDAP Communication to Secondary AD</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3897791#M471056</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have a customer that connects their ISE deployment to their main Active Directory Domain. They are seeing traffic from a PSN to a secondary Active Directory domain that has a one-way trust with the main Active Directory domain.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is there any reason there would be traffic to the secondary domain if its not specified in the config? The secondary domain is not listed in the secondary domains for the ISE deployment.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Appreciate any guidance.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 25 Jul 2019 18:22:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3897791#M471056</guid>
      <dc:creator>Rob4</dc:creator>
      <dc:date>2019-07-25T18:22:29Z</dc:date>
    </item>
    <item>
      <title>Re: ISE LDAP Communication to Secondary AD</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3898318#M471057</link>
      <description>&lt;P&gt;Such traffic is for AD domain and forest discovery.&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2019 13:58:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3898318#M471057</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2019-07-26T13:58:27Z</dc:date>
    </item>
    <item>
      <title>Re: ISE LDAP Communication to Secondary AD</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3898369#M471058</link>
      <description>&lt;P&gt;Thanks for the reply. So, if there was no trusting between the two domains, would we see that discovery still?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2019 14:48:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3898369#M471058</guid>
      <dc:creator>Rob4</dc:creator>
      <dc:date>2019-07-26T14:48:49Z</dc:date>
    </item>
    <item>
      <title>Re: ISE LDAP Communication to Secondary AD</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3898747#M471059</link>
      <description>&lt;P&gt;Yes.&lt;/P&gt;</description>
      <pubDate>Sat, 27 Jul 2019 23:54:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3898747#M471059</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2019-07-27T23:54:36Z</dc:date>
    </item>
    <item>
      <title>Re: ISE LDAP Communication to Secondary AD</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3899530#M471210</link>
      <description>&lt;P&gt;Thanks for the assistance. Do we have any documentation to show this behavior? The customer will need to provide some info to other team members.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2019 19:39:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3899530#M471210</guid>
      <dc:creator>Rob4</dc:creator>
      <dc:date>2019-07-29T19:39:40Z</dc:date>
    </item>
    <item>
      <title>Re: ISE LDAP Communication to Secondary AD</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3899698#M471211</link>
      <description>&lt;P&gt;I suggest going through Cisco Live session -&amp;nbsp;&lt;SPAN&gt;BRKSEC-2132 which has information about discovery !&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Nidhi&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jul 2019 04:04:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3899698#M471211</guid>
      <dc:creator>Nidhi</dc:creator>
      <dc:date>2019-07-30T04:04:09Z</dc:date>
    </item>
    <item>
      <title>Re: ISE LDAP Communication to Secondary AD</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3900019#M471212</link>
      <description>&lt;P&gt;Thanks so much for the info!&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jul 2019 13:25:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ldap-communication-to-secondary-ad/m-p/3900019#M471212</guid>
      <dc:creator>Rob4</dc:creator>
      <dc:date>2019-07-30T13:25:22Z</dc:date>
    </item>
  </channel>
</rss>

