<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE Standalone HA to new VM's in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944650#M497159</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Which UDI do I need to re-host the licenses to during the migration to the new VM's?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the process I had in mind, is this the best practice process? Is there a better way?&lt;/P&gt;
&lt;P&gt;2 existing Standalone HA VM's&lt;/P&gt;
&lt;P&gt;- Shutdown Secondary Standalone Node&lt;/P&gt;
&lt;P&gt;- Bring up new Standalone VM as Secondary (re-use IP) and add it to the existing Primary&lt;/P&gt;
&lt;P&gt;- Promote new Secondary Standalone to Primary&lt;/P&gt;
&lt;P&gt;- Now shutdown the Secondary&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-&amp;nbsp;Bring up new Standalone VM as Secondary (re-use IP) and add it to the existing Primary&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What gets synced when you connect a Secondary to a Primary Node? Configuration? Certs? Etc?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 21 Oct 2019 15:02:35 GMT</pubDate>
    <dc:creator>tolarosa@cisco.com</dc:creator>
    <dc:date>2019-10-21T15:02:35Z</dc:date>
    <item>
      <title>ISE Standalone HA to new VM's</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944097#M497129</link>
      <description>&lt;P&gt;What's the best practice(s) process for migrating 2 existing ISE Standalone HA Nodes to 2 new ISE Standalone HA VM Appliances?&amp;nbsp; What are the caveats to be aware of?&amp;nbsp; Licensing, Certs, Etc?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 20 Oct 2019 22:50:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944097#M497129</guid>
      <dc:creator>tolarosa@cisco.com</dc:creator>
      <dc:date>2019-10-20T22:50:44Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Standalone HA to new VM's</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944466#M497136</link>
      <description>&lt;P&gt;when you are rehosting ,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;existing valid feature licenses can be reused. you will need the VM licenses though.&lt;/P&gt;
&lt;P&gt;Also, please refer to the link here-&amp;nbsp;&lt;A href="https://community.cisco.com/t5/security-documents/how-do-i-rehost-my-existing-ise-license-s-onto-a-new-or/ta-p/3632248" target="_blank"&gt;https://community.cisco.com/t5/security-documents/how-do-i-rehost-my-existing-ise-license-s-onto-a-new-or/ta-p/3632248&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Oct 2019 11:22:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944466#M497136</guid>
      <dc:creator>Nidhi</dc:creator>
      <dc:date>2019-10-21T11:22:54Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Standalone HA to new VM's</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944650#M497159</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Which UDI do I need to re-host the licenses to during the migration to the new VM's?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the process I had in mind, is this the best practice process? Is there a better way?&lt;/P&gt;
&lt;P&gt;2 existing Standalone HA VM's&lt;/P&gt;
&lt;P&gt;- Shutdown Secondary Standalone Node&lt;/P&gt;
&lt;P&gt;- Bring up new Standalone VM as Secondary (re-use IP) and add it to the existing Primary&lt;/P&gt;
&lt;P&gt;- Promote new Secondary Standalone to Primary&lt;/P&gt;
&lt;P&gt;- Now shutdown the Secondary&amp;nbsp;&lt;/P&gt;
&lt;P&gt;-&amp;nbsp;Bring up new Standalone VM as Secondary (re-use IP) and add it to the existing Primary&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What gets synced when you connect a Secondary to a Primary Node? Configuration? Certs? Etc?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Oct 2019 15:02:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944650#M497159</guid>
      <dc:creator>tolarosa@cisco.com</dc:creator>
      <dc:date>2019-10-21T15:02:35Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Standalone HA to new VM's</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944885#M497180</link>
      <description>This will work if you are replacing the nodes on the same version of ISE? Your process of shutting down secondary, standing up replacement VM on the same addressing, and joining it will work. When you join it and it syncs, it will contain an identical copy of the configuration and database.  You need to patch to the same top patch of the existing deployment, and install deployment certs, export the public and private key if you want to reuse certs.  You only need to install the trust certs to install any required node certs, all other trust store certs will sync when you join the node to the deployment.  &lt;BR /&gt;&lt;BR /&gt;The only piece that you should have to address is the licensing, but you have an eval license that will hold you over until you can sort it out.  TAC will have to be involved to rehost licensing if you don't have access to the original person that fulfilled them on the licensing portal.  &lt;BR /&gt;&lt;BR /&gt;As Nidhi said, they will have to buy two new VM licenses since they wouldn't own any from a SNS deployment.</description>
      <pubDate>Mon, 21 Oct 2019 21:02:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-standalone-ha-to-new-vm-s/m-p/3944885#M497180</guid>
      <dc:creator>Damien Miller</dc:creator>
      <dc:date>2019-10-21T21:02:33Z</dc:date>
    </item>
  </channel>
</rss>

