<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic TrustSec Notifications and Updates in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/trustsec-notifications-and-updates/m-p/4320055#M566642</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have 4 ISE (2 PAN/MNT) and 2 PSN and a DNA Center.&lt;/P&gt;&lt;P&gt;SGT are created on DNA center, which informs ISE and then ISE pushes them to the Switches.&lt;/P&gt;&lt;P&gt;All looks fine as we can see SGT on switches, but can't figure out the magic ....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I created a SGT on DNAC, and on ISE I use the Push option (top right of the Webui)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I run a TCPDUMP on the PSN I see that the SGT list is learnt by the NAD&lt;/P&gt;&lt;P&gt;If I run a TCPDUMP on the PAN, I see a CoA from the PAN to the NAD with something like "update-cts-environment-data" (but no SGT list).=&amp;gt; what i the need for this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a dcumentation that explain the role of each component PSN/PAN in the SGT Notifications and updates.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 07 Apr 2021 17:03:05 GMT</pubDate>
    <dc:creator>REJR77</dc:creator>
    <dc:date>2021-04-07T17:03:05Z</dc:date>
    <item>
      <title>TrustSec Notifications and Updates</title>
      <link>https://community.cisco.com/t5/network-access-control/trustsec-notifications-and-updates/m-p/4320055#M566642</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have 4 ISE (2 PAN/MNT) and 2 PSN and a DNA Center.&lt;/P&gt;&lt;P&gt;SGT are created on DNA center, which informs ISE and then ISE pushes them to the Switches.&lt;/P&gt;&lt;P&gt;All looks fine as we can see SGT on switches, but can't figure out the magic ....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I created a SGT on DNAC, and on ISE I use the Push option (top right of the Webui)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I run a TCPDUMP on the PSN I see that the SGT list is learnt by the NAD&lt;/P&gt;&lt;P&gt;If I run a TCPDUMP on the PAN, I see a CoA from the PAN to the NAD with something like "update-cts-environment-data" (but no SGT list).=&amp;gt; what i the need for this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a dcumentation that explain the role of each component PSN/PAN in the SGT Notifications and updates.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Apr 2021 17:03:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/trustsec-notifications-and-updates/m-p/4320055#M566642</guid>
      <dc:creator>REJR77</dc:creator>
      <dc:date>2021-04-07T17:03:05Z</dc:date>
    </item>
    <item>
      <title>Re: TrustSec Notifications and Updates</title>
      <link>https://community.cisco.com/t5/network-access-control/trustsec-notifications-and-updates/m-p/4320063#M566643</link>
      <description>&lt;P&gt;There are quite a few commands with CTS; three of the most useful are; in terms of the inner workings though - I haven't found a singe document that covers everything though.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;show authentication sessions interface&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;show cts environmental-data&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;sh cts role-based sgt-map all&lt;/EM&gt;&lt;BR /&gt;&lt;EM&gt;sh cts role-based permission&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Apr 2021 17:11:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/trustsec-notifications-and-updates/m-p/4320063#M566643</guid>
      <dc:creator>Xividar</dc:creator>
      <dc:date>2021-04-07T17:11:16Z</dc:date>
    </item>
  </channel>
</rss>

