<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Discover/Recover ISE-AD join credentials in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/discover-recover-ise-ad-join-credentials/m-p/4499326#M570918</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1214276"&gt;@mattw&lt;/a&gt; Actually no, the credentials that are used for the join or leave operation &lt;U&gt;are not stored in Cisco &lt;SPAN class="ph"&gt;ISE&lt;/SPAN&gt;&lt;/U&gt;. Only the Cisco &lt;SPAN class="ph"&gt;ISE&lt;/SPAN&gt; machine account credentials are stored. It's this ISE machine account thats created in AD that is used to communicate between ISE and AD.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-3/ise_active_directory_integration/b_ISE_AD_integration_2x.html" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/ise/2-3/ise_active_directory_integration/b_ISE_AD_integration_2x.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 08 Nov 2021 11:04:31 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2021-11-08T11:04:31Z</dc:date>
    <item>
      <title>Discover/Recover ISE-AD join credentials</title>
      <link>https://community.cisco.com/t5/network-access-control/discover-recover-ise-ad-join-credentials/m-p/4499314#M570917</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'll be doing an ISE upgrade for a client soon and we want to make sure we have the AD user account credentials to hand so we can rejoin ISE to AD if we need to after the upgrade.&lt;/P&gt;&lt;P&gt;The client is not sure what account was used when it was set up.&lt;/P&gt;&lt;P&gt;I'm assuming ISE uses that account each time it does a user or group lookup right?&lt;/P&gt;&lt;P&gt;Is there any way to find this out from a log or something what account is being used?&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Matt.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Nov 2021 07:41:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/discover-recover-ise-ad-join-credentials/m-p/4499314#M570917</guid>
      <dc:creator>mattw</dc:creator>
      <dc:date>2021-11-08T07:41:02Z</dc:date>
    </item>
    <item>
      <title>Re: Discover/Recover ISE-AD join credentials</title>
      <link>https://community.cisco.com/t5/network-access-control/discover-recover-ise-ad-join-credentials/m-p/4499326#M570918</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1214276"&gt;@mattw&lt;/a&gt; Actually no, the credentials that are used for the join or leave operation &lt;U&gt;are not stored in Cisco &lt;SPAN class="ph"&gt;ISE&lt;/SPAN&gt;&lt;/U&gt;. Only the Cisco &lt;SPAN class="ph"&gt;ISE&lt;/SPAN&gt; machine account credentials are stored. It's this ISE machine account thats created in AD that is used to communicate between ISE and AD.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-3/ise_active_directory_integration/b_ISE_AD_integration_2x.html" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/ise/2-3/ise_active_directory_integration/b_ISE_AD_integration_2x.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Nov 2021 11:04:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/discover-recover-ise-ad-join-credentials/m-p/4499326#M570918</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-11-08T11:04:31Z</dc:date>
    </item>
    <item>
      <title>Re: Discover/Recover ISE-AD join credentials</title>
      <link>https://community.cisco.com/t5/network-access-control/discover-recover-ise-ad-join-credentials/m-p/4499403#M570930</link>
      <description>&lt;P&gt;Thank you&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Nov 2021 10:50:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/discover-recover-ise-ad-join-credentials/m-p/4499403#M570930</guid>
      <dc:creator>mattw</dc:creator>
      <dc:date>2021-11-08T10:50:47Z</dc:date>
    </item>
  </channel>
</rss>

