<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CISCO ISE - PSN Deployment in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186837#M563921</link>
    <description>&lt;P&gt;Hello all&lt;/P&gt;&lt;P&gt;I have three simple questions that I would like to know the answer, since I never done it before.&lt;/P&gt;&lt;P&gt;I have in production 2 nodes with PAN,MNT and PSN (One Primary and one Secondary) and I will take out the PSN role to a dedicated machine. So my doubts are in the configuration, right now I have the radius on all the switches pointing to the 2 nodes that have, since I will take off the PSN role to a dedicated node do I need to rebuild the entire configuration?&lt;/P&gt;&lt;P&gt;And with the policy’s do I need to do anything?&lt;/P&gt;&lt;P&gt;And in the networking tab where I add all the switches do I need to do some changes?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance for who can help me with this&lt;/P&gt;</description>
    <pubDate>Sat, 21 Nov 2020 10:01:14 GMT</pubDate>
    <dc:creator>TiUM</dc:creator>
    <dc:date>2020-11-21T10:01:14Z</dc:date>
    <item>
      <title>CISCO ISE - PSN Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186837#M563921</link>
      <description>&lt;P&gt;Hello all&lt;/P&gt;&lt;P&gt;I have three simple questions that I would like to know the answer, since I never done it before.&lt;/P&gt;&lt;P&gt;I have in production 2 nodes with PAN,MNT and PSN (One Primary and one Secondary) and I will take out the PSN role to a dedicated machine. So my doubts are in the configuration, right now I have the radius on all the switches pointing to the 2 nodes that have, since I will take off the PSN role to a dedicated node do I need to rebuild the entire configuration?&lt;/P&gt;&lt;P&gt;And with the policy’s do I need to do anything?&lt;/P&gt;&lt;P&gt;And in the networking tab where I add all the switches do I need to do some changes?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance for who can help me with this&lt;/P&gt;</description>
      <pubDate>Sat, 21 Nov 2020 10:01:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186837#M563921</guid>
      <dc:creator>TiUM</dc:creator>
      <dc:date>2020-11-21T10:01:14Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ISE - PSN Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186841#M563922</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;- In the running config of the switches, all you have to do is to point the radius-server-config to the dedicated PSN. But this is far from best practice. I would&amp;nbsp; recommend &lt;EM&gt;to have at least&amp;nbsp; &lt;FONT color="#008000"&gt;&lt;U&gt;&lt;STRONG&gt;2&lt;/STRONG&gt; &lt;/U&gt;working PSN&lt;/FONT&gt;, for failover reasons.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;M.&lt;/P&gt;</description>
      <pubDate>Sat, 21 Nov 2020 10:28:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186841#M563922</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2020-11-21T10:28:51Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ISE - PSN Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186882#M563923</link>
      <description>&lt;P&gt;Thank you for the reply,&lt;/P&gt;&lt;P&gt;Will definitely have 2 PSN's.&lt;/P&gt;&lt;P&gt;So that's the only thing i need to do? Add the PSN to the Deploy and change config in swith's, instead of appoint&amp;nbsp;to the actual node will appoint to the new PSN right?&lt;/P&gt;</description>
      <pubDate>Sat, 21 Nov 2020 13:43:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186882#M563923</guid>
      <dc:creator>Kalimoz</dc:creator>
      <dc:date>2020-11-21T13:43:24Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ISE - PSN Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186925#M563924</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;- Switches determine which radius servers (PSN's) are used in the running config. On a&amp;nbsp; first approach make sure that there are at least two. If you want to play with &lt;EM&gt;load balancing schemes and preferences&lt;/EM&gt; , &lt;STRONG&gt;check this document&lt;/STRONG&gt; :&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_rad/configuration/xe-16/sec-usr-rad-xe-16-book/sec-rad-load-bal.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_rad/configuration/xe-16/sec-usr-rad-xe-16-book/sec-rad-load-bal.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;M.&lt;/P&gt;</description>
      <pubDate>Sat, 21 Nov 2020 17:41:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4186925#M563924</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2020-11-21T17:41:11Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ISE - PSN Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4187587#M563948</link>
      <description>&lt;P&gt;Add the PSNs to the Deployment, point switches to the new PSNs, disable PSN role on the Admin Nodes.&lt;/P&gt;&lt;P&gt;BR&lt;BR /&gt;Rick&lt;/P&gt;</description>
      <pubDate>Mon, 23 Nov 2020 16:14:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4187587#M563948</guid>
      <dc:creator>rschlayer</dc:creator>
      <dc:date>2020-11-23T16:14:43Z</dc:date>
    </item>
    <item>
      <title>Re: CISCO ISE - PSN Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4187623#M563949</link>
      <description>&lt;P&gt;About the certificates that are installed even the public one for the Portal Guest, do i need to do anything or can stay in the PAN?&lt;/P&gt;</description>
      <pubDate>Mon, 23 Nov 2020 17:31:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-psn-deployment/m-p/4187623#M563949</guid>
      <dc:creator>TiUM</dc:creator>
      <dc:date>2020-11-23T17:31:47Z</dc:date>
    </item>
  </channel>
</rss>

