<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE domain for distributed deployment in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-domain-for-distributed-deployment/m-p/3555950#M540717</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To explain my poor wording, I'm looking to connect all nodes to the same AD domain, but some of them sit in a different DNS domain. Warping my mind trying to figure out if it's a problem &lt;IMG src="https://community.cisco.com/legacyfs/online/emoticons/confused.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 20 Sep 2012 21:48:05 GMT</pubDate>
    <dc:creator>bikespace</dc:creator>
    <dc:date>2012-09-20T21:48:05Z</dc:date>
    <item>
      <title>ISE domain for distributed deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-domain-for-distributed-deployment/m-p/3555949#M540715</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Deploying multiple PSN's with a distributed deployment, do all the PSN's have to be in the same domain? I have 6 set up in one domain, and would like to run a few more through firewalls and using a different dns domain.&lt;/P&gt;&lt;P&gt;Also interested to see how AD integration works with this. I'd still expect to join the nodes to the common AD domain. Would they be able to join an AD domain which isn't linked with their FQDN?&lt;/P&gt;&lt;P&gt;I'm hoping that running the other policy nodes on an external domain, I can use a standard CSR for the external public certs.&lt;/P&gt;&lt;P&gt;All comments, suggestions, spoliers welcomed!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Sep 2012 22:34:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-domain-for-distributed-deployment/m-p/3555949#M540715</guid>
      <dc:creator>garethhinton</dc:creator>
      <dc:date>2012-09-19T22:34:10Z</dc:date>
    </item>
    <item>
      <title>Re: ISE domain for distributed deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-domain-for-distributed-deployment/m-p/3555950#M540717</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To explain my poor wording, I'm looking to connect all nodes to the same AD domain, but some of them sit in a different DNS domain. Warping my mind trying to figure out if it's a problem &lt;IMG src="https://community.cisco.com/legacyfs/online/emoticons/confused.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Sep 2012 21:48:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-domain-for-distributed-deployment/m-p/3555950#M540717</guid>
      <dc:creator>bikespace</dc:creator>
      <dc:date>2012-09-20T21:48:05Z</dc:date>
    </item>
    <item>
      <title>Re: ISE domain for distributed deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-domain-for-distributed-deployment/m-p/3555951#M540719</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The DNS domains of the ISE nodes may differ from that of the AD domain.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For example, we may have an ISE node with FQDN ise-1.cisco-test.net and join it to an AD domain demo.local. Therefore, we could have ISE nodes with different DNS domains all join to the same AD domain. The main requirement is that the DNS servers configured in the ISE node need to be able to resolve all the records for the AD domains.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please take a look at&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.ciscolive.com/global/on-demand-library/?zid=clus&amp;amp;search=#/session/14525434149870017MRf" title="https://www.ciscolive.com/global/on-demand-library/?zid=clus&amp;amp;search=#/session/14525434149870017MRf"&gt;What's new in ISE Active Directory connector - BRKSEC-2132 in On-Demand Library - Cisco Live Global Events&lt;/A&gt;&lt;/P&gt;&lt;P&gt;and&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-2/ise_active_directory_integration/b_ISE_AD_integration_2x.html" title="https://www.cisco.com/c/en/us/td/docs/security/ise/2-2/ise_active_directory_integration/b_ISE_AD_integration_2x.html"&gt;Active Directory Integration with Cisco ISE 2.x - Cisco&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Apr 2018 02:21:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-domain-for-distributed-deployment/m-p/3555951#M540719</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2018-04-25T02:21:05Z</dc:date>
    </item>
  </channel>
</rss>

