<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Why this feature is on the in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672788#M54635</link>
    <description>&lt;P&gt;Why this feature is on the way out ? is not a required, &amp;nbsp;but can be a customer request ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/ise/1-2/user_guide/ise_user_guide/ise_ipep_deploy.html#pgfId-1265599&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But the secondary &amp;nbsp;MNT/PAN can manage 5 psn or work in standby ?&lt;/P&gt;&lt;P&gt;you are telling me that If one remote office fail, lose psn .... ?&lt;/P&gt;</description>
    <pubDate>Mon, 27 Jul 2015 19:27:19 GMT</pubDate>
    <dc:creator>Augustgood</dc:creator>
    <dc:date>2015-07-27T19:27:19Z</dc:date>
    <item>
      <title>ISE 1.3 Distributed environment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672786#M54633</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;in a network with two main campus and ten remote office with 3000 total device, for implement Cisco Ise 1.3 distributed, we want to buy 2 appliance SNS- 3415-K9 for management/monitoring/policy sync and 10 VM &amp;nbsp;for policy sevice node, but we found that in distributed environment we need a pair of inline posture node, we must buy other two appliance or VM for inline posture &amp;nbsp;??&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 05:56:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672786#M54633</guid>
      <dc:creator>Augustgood</dc:creator>
      <dc:date>2019-03-11T05:56:22Z</dc:date>
    </item>
    <item>
      <title>1.You should look through the</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672787#M54634</link>
      <description>&lt;P&gt;1.You should look through the ISE design guides, i believe that you should have MNT and PAN on different servers to support more than 5 dedicated PSN's. Having one 3415 as Primary PAN, Secondary MNT, and one as Primary MNT, Secondary PAN is only supported with up to 5 PSNs.&lt;/P&gt;&lt;P&gt;Distributed environment does not require inline nodes, and that functionality is also on the way out. What is the reason you think this would be required ?.Is it for a non-cisco network ?&lt;/P&gt;&lt;P&gt;Check this url for more information on scaling ise deployments :&lt;/P&gt;&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/ise/1-3/installation_guide/b_ise_InstallationGuide13/b_ise_InstallationGuide12_chapter_00.html#ID-1413-000000dc&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jul 2015 16:25:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672787#M54634</guid>
      <dc:creator>jan.nielsen</dc:creator>
      <dc:date>2015-07-27T16:25:29Z</dc:date>
    </item>
    <item>
      <title>Why this feature is on the</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672788#M54635</link>
      <description>&lt;P&gt;Why this feature is on the way out ? is not a required, &amp;nbsp;but can be a customer request ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/ise/1-2/user_guide/ise_user_guide/ise_ipep_deploy.html#pgfId-1265599&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But the secondary &amp;nbsp;MNT/PAN can manage 5 psn or work in standby ?&lt;/P&gt;&lt;P&gt;you are telling me that If one remote office fail, lose psn .... ?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jul 2015 19:27:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672788#M54635</guid>
      <dc:creator>Augustgood</dc:creator>
      <dc:date>2015-07-27T19:27:19Z</dc:date>
    </item>
    <item>
      <title>Well, it's not been</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672789#M54636</link>
      <description>&lt;P&gt;Well, it's not been officially said by Cisco, but it's already been removed from working on the SNS.3495, so i would say it's not something that one should design new ISE solution with.&lt;/P&gt;&lt;P&gt;No, the secondary PAN/MNT will manage the same PSNs as the primary, you can't divide your PSNs between PAN/MNT nodes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14.3999996185303px;"&gt;"you are telling me that If one remote office fail, lose psn .... ?"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Not sure what you are asking,?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jul 2015 19:48:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672789#M54636</guid>
      <dc:creator>jan.nielsen</dc:creator>
      <dc:date>2015-07-27T19:48:36Z</dc:date>
    </item>
    <item>
      <title>ok thank you i ask you, if my</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672790#M54637</link>
      <description>&lt;P&gt;ok thank you&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i ask you, if my PAm/mnt primary fail , my secondary can manage only the same psn&amp;nbsp;of primary, not other&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jul 2015 04:30:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672790#M54637</guid>
      <dc:creator>Augustgood</dc:creator>
      <dc:date>2015-07-28T04:30:02Z</dc:date>
    </item>
    <item>
      <title>Yes, your primary and</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672791#M54638</link>
      <description>&lt;P&gt;Yes, your primary and secondary PAN are the same, the primary replicates it's config to the secondary, so when the primary fails, the secondary takes over (only automatically from ise 1.4), they can't manage different PSNs.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jul 2015 07:25:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672791#M54638</guid>
      <dc:creator>jan.nielsen</dc:creator>
      <dc:date>2015-07-28T07:25:17Z</dc:date>
    </item>
    <item>
      <title>other question ..if my wlc</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672792#M54639</link>
      <description>&lt;P&gt;other question ..&lt;/P&gt;&lt;P&gt;if my wlc rel 7.6&amp;nbsp;support &amp;nbsp;CoA i can exclude inline posture ??&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jul 2015 07:36:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672792#M54639</guid>
      <dc:creator>Augustgood</dc:creator>
      <dc:date>2015-07-28T07:36:45Z</dc:date>
    </item>
    <item>
      <title>Yes</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672793#M54640</link>
      <description>&lt;P&gt;Yes&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jul 2015 07:39:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-1-3-distributed-environment/m-p/2672793#M54640</guid>
      <dc:creator>jan.nielsen</dc:creator>
      <dc:date>2015-07-28T07:39:12Z</dc:date>
    </item>
  </channel>
</rss>

