<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE PSN node down in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-psn-node-down/m-p/4467756#M569737</link>
    <description>&lt;P&gt;Ise 3.0 patch 2 in deployment page the psn node is showing down but i can ssh into it.&lt;/P&gt;&lt;P&gt;I know it relies on a heartbeat but it's in the same vm environment so there is no acl or rules.&lt;/P&gt;&lt;P&gt;Topped/start services and performed a reload and looked at sftp backups which happen weekly and are successful.&lt;/P&gt;&lt;P&gt;Primary PAN i can't ping the psn and vice versa but ssh is working.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any ideas? Thanks&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 16 Sep 2021 14:52:09 GMT</pubDate>
    <dc:creator>cae_technology</dc:creator>
    <dc:date>2021-09-16T14:52:09Z</dc:date>
    <item>
      <title>ISE PSN node down</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-psn-node-down/m-p/4467756#M569737</link>
      <description>&lt;P&gt;Ise 3.0 patch 2 in deployment page the psn node is showing down but i can ssh into it.&lt;/P&gt;&lt;P&gt;I know it relies on a heartbeat but it's in the same vm environment so there is no acl or rules.&lt;/P&gt;&lt;P&gt;Topped/start services and performed a reload and looked at sftp backups which happen weekly and are successful.&lt;/P&gt;&lt;P&gt;Primary PAN i can't ping the psn and vice versa but ssh is working.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any ideas? Thanks&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Sep 2021 14:52:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-psn-node-down/m-p/4467756#M569737</guid>
      <dc:creator>cae_technology</dc:creator>
      <dc:date>2021-09-16T14:52:09Z</dc:date>
    </item>
    <item>
      <title>Re: ISE PSN node down</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-psn-node-down/m-p/4467763#M569740</link>
      <description>&lt;P&gt;I would focus on the connectivity between PAN and PSN as you mention the ping does not work. If not ACL, is it possible the route between the two or maybe incorrect IP settings such as subnet mask?&lt;/P&gt;</description>
      <pubDate>Thu, 16 Sep 2021 14:54:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-psn-node-down/m-p/4467763#M569740</guid>
      <dc:creator>howon</dc:creator>
      <dc:date>2021-09-16T14:54:48Z</dc:date>
    </item>
    <item>
      <title>Re: ISE PSN node down</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-psn-node-down/m-p/4467823#M569743</link>
      <description>&lt;P&gt;If you have any queue link alarms on the dashboard then we could possibly also point to the ISE messaging service not operating correctly. The health status alarms + dashboard statistics come across via syslog messages, so if the messaging service is having issues then we see this as a symptom.&lt;BR /&gt;&lt;BR /&gt;If you have queue link alarms actively being generated then you can regenerate the ISE messaging certification from the Certificate Signing Request (CSR) page.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 Sep 2021 16:07:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-psn-node-down/m-p/4467823#M569743</guid>
      <dc:creator>Damien Miller</dc:creator>
      <dc:date>2021-09-16T16:07:24Z</dc:date>
    </item>
  </channel>
</rss>

