<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Upgrade ISE Distributed deployment in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799083#M485282</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;- Yes , it is a cumbersome process , many people prefer building a new environment, besides the&amp;nbsp; 'old ise' ; let alone that the buikl-in upgrade process may fail too. Check the thread below and reflect on it :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;A href="https://community.cisco.com/t5/identity-services-engine-ise/ise-2-2-patch-10-upgrade/m-p/3788144" target="_blank"&gt;https://community.cisco.com/t5/identity-services-engine-ise/ise-2-2-patch-10-upgrade/m-p/3788144&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;M.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Feb 2019 11:00:15 GMT</pubDate>
    <dc:creator>Mark Elsen</dc:creator>
    <dc:date>2019-02-11T11:00:15Z</dc:date>
    <item>
      <title>Upgrade ISE Distributed deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799068#M485280</link>
      <description>&lt;P&gt;I am in the process of upgrading my Cisco ISE distributed deployment. I have 2 PAN and 3 PSN in the deployment.&lt;/P&gt;
&lt;P&gt;I was reviewing the upgrade guide. I noticed&amp;nbsp;that the upgrade guide states if your PSN is part of a group cluster, you must deregister the PSN from the PAN and upgrade the node in standalone mode.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is that the correct process?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My concern is once that PSN node is back up and running in standalone mode the devices that are pointed to that PSN node will not be able to authenticate&amp;nbsp;their clients.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Step 3 of the upgrade guide&lt;/P&gt;
&lt;P&gt;Upgrade the Policy Service Nodes (nodes C, D, E, and F) next. You can upgrade several PSNs in parallel, but if you upgrade all the PSNs concurrently, your network will experience a downtime. If your PSN is part of a node group cluster, you must deregister the PSN from the PAN, upgrade it as a standalone node, and register it with the PAN in the new deployment. After the upgrade, the PSNs are registered with the primary node of the new deployment (node B), and the data from the primary node (node B) is replicated to all the PSNs. The PSNs retain their personas, node group information, and profiling probe configurations.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Feb 2019 10:45:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799068#M485280</guid>
      <dc:creator>Maurice Ball</dc:creator>
      <dc:date>2019-02-11T10:45:37Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade ISE Distributed deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799083#M485282</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;- Yes , it is a cumbersome process , many people prefer building a new environment, besides the&amp;nbsp; 'old ise' ; let alone that the buikl-in upgrade process may fail too. Check the thread below and reflect on it :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&lt;A href="https://community.cisco.com/t5/identity-services-engine-ise/ise-2-2-patch-10-upgrade/m-p/3788144" target="_blank"&gt;https://community.cisco.com/t5/identity-services-engine-ise/ise-2-2-patch-10-upgrade/m-p/3788144&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;M.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Feb 2019 11:00:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799083#M485282</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2019-02-11T11:00:15Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade ISE Distributed deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799087#M485283</link>
      <description>&lt;P&gt;Ok, and thanks for the quick reply.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Feb 2019 11:05:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799087#M485283</guid>
      <dc:creator>Maurice Ball</dc:creator>
      <dc:date>2019-02-11T11:05:50Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade ISE Distributed deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799089#M485284</link>
      <description>Ok, and thanks for the quick reply.</description>
      <pubDate>Mon, 11 Feb 2019 11:07:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/upgrade-ise-distributed-deployment/m-p/3799089#M485284</guid>
      <dc:creator>Maurice Ball</dc:creator>
      <dc:date>2019-02-11T11:07:47Z</dc:date>
    </item>
  </channel>
</rss>

