<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE Internal DataBase in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584430#M511696</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;See &lt;A href="https://community.cisco.com/docs/DOC-69521"&gt;ISE Security Best Practices (Hardening)&lt;/A&gt;or more details including some info on DB encryption on FAQ.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no direct access the the underlying databases.&amp;nbsp; Yes, there is more than one.&amp;nbsp; Access to config is provided via the ISE Admin UI or via ERS API.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 09 Mar 2018 14:44:09 GMT</pubDate>
    <dc:creator>Craig Hyps</dc:creator>
    <dc:date>2018-03-09T14:44:09Z</dc:date>
    <item>
      <title>ISE Internal DataBase</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584428#M511694</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="font-size: 12pt; font-family: Calibri, sans-serif; color: #000000;"&gt;&lt;SPAN style="font-size: 11pt;"&gt;Hi Team, &lt;/SPAN&gt;&lt;/P&gt;&lt;P style="font-size: 12pt; font-family: Calibri, sans-serif; color: #000000;"&gt;&lt;/P&gt;&lt;P style="font-size: 12pt; font-family: Calibri, sans-serif; color: #000000;"&gt;&lt;SPAN style="font-size: 11pt;"&gt;I have some questions about ISE internal database:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;SPAN style="font-size: 11pt;"&gt;What is the database engine of ISE internal databases ?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 11pt;"&gt;Is the content of ISE database encrypted ?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN style="font-size: 11pt;"&gt;Is it possible to connect to ISE database using a AD domain user ?&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN lang="EN" style="font-size: 11pt;"&gt;What controls or functionalities does the solution have to safeguard the integrity and security of the information received, stored, modified and / or processed?&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="font-size: 12pt; font-family: Calibri, sans-serif; color: #000000;"&gt;&lt;/P&gt;&lt;P style="font-size: 12pt; font-family: Calibri, sans-serif; color: #000000;"&gt;Thanks in advance,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2018 09:18:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584428#M511694</guid>
      <dc:creator>gugonza2</dc:creator>
      <dc:date>2018-03-09T09:18:22Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Internal DataBase</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584429#M511695</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ISE uses an Oracle database.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The best way to access ISE information remotely is using the REST API interface which also ensures the database integrity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The database tables and structure would can (and does) change between versions so using an API abstracts this so your code doesn't need to be updated every time this happens.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See the following for the REST API documentation:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-1/api_ref_guide/api_ref_book.html" title="https://www.cisco.com/c/en/us/td/docs/security/ise/2-1/api_ref_guide/api_ref_book.html"&gt;Cisco Identity Services Engine API Reference Guide, Release 2.x - Cisco&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2018 13:02:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584429#M511695</guid>
      <dc:creator>dmh</dc:creator>
      <dc:date>2018-03-09T13:02:15Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Internal DataBase</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584430#M511696</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;See &lt;A href="https://community.cisco.com/docs/DOC-69521"&gt;ISE Security Best Practices (Hardening)&lt;/A&gt;or more details including some info on DB encryption on FAQ.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no direct access the the underlying databases.&amp;nbsp; Yes, there is more than one.&amp;nbsp; Access to config is provided via the ISE Admin UI or via ERS API.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2018 14:44:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584430#M511696</guid>
      <dc:creator>Craig Hyps</dc:creator>
      <dc:date>2018-03-09T14:44:09Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Internal DataBase</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584431#M511697</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thx,&amp;nbsp; Just a last question;&amp;nbsp; are these DBs encrypted ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2018 14:45:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584431#M511697</guid>
      <dc:creator>gugonza2</dc:creator>
      <dc:date>2018-03-09T14:45:15Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Internal DataBase</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584432#M511699</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Any document or references with that information ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2018 14:45:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584432#M511699</guid>
      <dc:creator>gugonza2</dc:creator>
      <dc:date>2018-03-09T14:45:45Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Internal DataBase</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584433#M511701</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please refer to the link already provided.&amp;nbsp; It states that database is not encrypted.&amp;nbsp; Data fields &lt;STRONG&gt;other than passwords&lt;/STRONG&gt; are not encrypted, but ISE admin users do not have direct accesses to the database in normal operations.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2018 15:07:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-internal-database/m-p/3584433#M511701</guid>
      <dc:creator>Craig Hyps</dc:creator>
      <dc:date>2018-03-09T15:07:14Z</dc:date>
    </item>
  </channel>
</rss>

