<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Restarting ISE application server in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422246#M568014</link>
    <description>&lt;P&gt;I would recommend starting here in the Administration node high availability section. There is a table that indicates which services will be unavailable while the node is down. I would treat this as a node down impact.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-7/admin_guide/b_ise_27_admin_guide/b_ISE_admin_27_deployment.html#ID57" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/ise/2-7/admin_guide/b_ise_27_admin_guide/b_ISE_admin_27_deployment.html#ID57&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If your node also hosts other roles, then you should look at those sections too. If your PAN node also hosts the PSN role, then you will not have endpoint authentication during the application restart.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 23 Jun 2021 06:06:55 GMT</pubDate>
    <dc:creator>Damien Miller</dc:creator>
    <dc:date>2021-06-23T06:06:55Z</dc:date>
    <item>
      <title>Restarting ISE application server</title>
      <link>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422242#M568011</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;Other than preventing access to the administration web page what other impact does restarting the application server have?&lt;/P&gt;&lt;P&gt;Does it take out all web services? by that I mean users portals.&lt;/P&gt;&lt;P&gt;I went to disable the TLS 1.0 and TLS1.1 in security settings and got a warning that Application server would restart on all nodes.&lt;/P&gt;&lt;P&gt;Not a problem other than I did not call this out in the change and my customer has a very strict change policy.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jun 2021 05:51:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422242#M568011</guid>
      <dc:creator>russell.sage</dc:creator>
      <dc:date>2021-06-23T05:51:14Z</dc:date>
    </item>
    <item>
      <title>Re: Restarting ISE application server</title>
      <link>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422245#M568013</link>
      <description>&lt;P&gt;The application server handles most of the basic functionality. While restarting, this node will be not available for a couple of minutes. It's a good test that will show that your redundancy concept is working.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jun 2021 06:06:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422245#M568013</guid>
      <dc:creator>Karsten Iwen</dc:creator>
      <dc:date>2021-06-23T06:06:00Z</dc:date>
    </item>
    <item>
      <title>Re: Restarting ISE application server</title>
      <link>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422246#M568014</link>
      <description>&lt;P&gt;I would recommend starting here in the Administration node high availability section. There is a table that indicates which services will be unavailable while the node is down. I would treat this as a node down impact.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-7/admin_guide/b_ise_27_admin_guide/b_ISE_admin_27_deployment.html#ID57" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/ise/2-7/admin_guide/b_ise_27_admin_guide/b_ISE_admin_27_deployment.html#ID57&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If your node also hosts other roles, then you should look at those sections too. If your PAN node also hosts the PSN role, then you will not have endpoint authentication during the application restart.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jun 2021 06:06:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422246#M568014</guid>
      <dc:creator>Damien Miller</dc:creator>
      <dc:date>2021-06-23T06:06:55Z</dc:date>
    </item>
    <item>
      <title>Re: Restarting ISE application server</title>
      <link>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422250#M568015</link>
      <description>Hi&lt;BR /&gt;Thanks for this. I had checked the 2.6 Admin guide. The Application Server process runs all 6 nodes 2*PAN+2*MnT+2*PSN. I was looking to disable Security settings following a Rapid7 scan. If I have to call out an outage that is fine I just didn't do that so had to abort the change.&lt;BR /&gt;What I can't seem to find is what functions other than the Admin GUI are impacted by the application server process restarting.&lt;BR /&gt;[cid:image001.png@01D767FF.3064E900]&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 23 Jun 2021 06:13:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422250#M568015</guid>
      <dc:creator>russell.sage</dc:creator>
      <dc:date>2021-06-23T06:13:46Z</dc:date>
    </item>
    <item>
      <title>Re: Restarting ISE application server</title>
      <link>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422483#M568026</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/323172"&gt;@russell.sage&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;please compare the following command:&lt;/P&gt;&lt;PRE&gt;ise/admin# show ports&lt;/PRE&gt;&lt;P&gt;before and after the:&lt;/P&gt;&lt;PRE&gt;ise/admin# application stop ise&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;you are able to verify a huge difference when you stop the &lt;STRONG&gt;Application Server&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope this helps !!!&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jun 2021 12:36:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422483#M568026</guid>
      <dc:creator>Marcelo Morais</dc:creator>
      <dc:date>2021-06-23T12:36:39Z</dc:date>
    </item>
    <item>
      <title>Re: Restarting ISE application server</title>
      <link>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422508#M568027</link>
      <description>&lt;P&gt;Marcelo&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for that.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jun 2021 13:12:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/restarting-ise-application-server/m-p/4422508#M568027</guid>
      <dc:creator>russell.sage</dc:creator>
      <dc:date>2021-06-23T13:12:05Z</dc:date>
    </item>
  </channel>
</rss>

