<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE 3.0 Integration with ACI - Limitations? in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-3-0-integration-with-aci-limitations/m-p/4504239#M571110</link>
    <description>&lt;P&gt;Hello folks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a project on where we're integrating ISE 3.0 with ACI and it looks as though we can only integrate with a single ACI pod and only 1 tenant within it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have other had the same?&amp;nbsp; Is there a workaround or roadmap to allow 1 ISE instance to integrate with multiple ACI's or tenants?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best, Leigh&lt;/P&gt;</description>
    <pubDate>Wed, 17 Nov 2021 14:06:41 GMT</pubDate>
    <dc:creator>leighharrison</dc:creator>
    <dc:date>2021-11-17T14:06:41Z</dc:date>
    <item>
      <title>ISE 3.0 Integration with ACI - Limitations?</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-3-0-integration-with-aci-limitations/m-p/4504239#M571110</link>
      <description>&lt;P&gt;Hello folks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a project on where we're integrating ISE 3.0 with ACI and it looks as though we can only integrate with a single ACI pod and only 1 tenant within it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have other had the same?&amp;nbsp; Is there a workaround or roadmap to allow 1 ISE instance to integrate with multiple ACI's or tenants?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best, Leigh&lt;/P&gt;</description>
      <pubDate>Wed, 17 Nov 2021 14:06:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-3-0-integration-with-aci-limitations/m-p/4504239#M571110</guid>
      <dc:creator>leighharrison</dc:creator>
      <dc:date>2021-11-17T14:06:41Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 3.0 Integration with ACI - Limitations?</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-3-0-integration-with-aci-limitations/m-p/4504501#M571115</link>
      <description>&lt;P&gt;The current solution for &lt;A href="https://community.cisco.com/t5/security-documents/trustsec-aci-policy-plane-integration-configuration-guide-pdf/ta-p/3653367" target="_blank" rel="noopener"&gt;TrustSec-ACI Policy Plane Integration&lt;/A&gt; has the limitation that it only supports a single L3Out, within a single Tenant, within a single ACI cluster. This applies to current versions of APIC-DC and ISE.&lt;/P&gt;
&lt;P&gt;We cannot discuss roadmap on this public forum.&lt;/P&gt;
&lt;P&gt;Another option for this type of multi-domain segmentation would be leveraging Cisco Secure Workload (formerly Tetration). Secure Workload supports integration with ISE via pxGrid to learn IP-SGT bindings and apply policies to the workloads using the providers native firewall based on source/destination SGTs.&lt;/P&gt;
&lt;P&gt;See &lt;A href="https://www.cisco.com/c/en/us/products/collateral/data-center-analytics/tetration-analytics/solution-overview-c22-742897.html" target="_blank" rel="noopener"&gt;Cisco Secure Workload (formerly Tetration and Cisco ISE Integration Use Cases and Benefits) Solution Overview&lt;/A&gt; for more info and links.&lt;/P&gt;</description>
      <pubDate>Wed, 17 Nov 2021 22:20:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-3-0-integration-with-aci-limitations/m-p/4504501#M571115</guid>
      <dc:creator>Greg Gibbs</dc:creator>
      <dc:date>2021-11-17T22:20:47Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 3.0 Integration with ACI - Limitations?</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-3-0-integration-with-aci-limitations/m-p/4504877#M571129</link>
      <description>&lt;P&gt;Thanks for the great reply, Greg.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best, Leigh&lt;/P&gt;</description>
      <pubDate>Thu, 18 Nov 2021 11:52:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-3-0-integration-with-aci-limitations/m-p/4504877#M571129</guid>
      <dc:creator>leighharrison</dc:creator>
      <dc:date>2021-11-18T11:52:16Z</dc:date>
    </item>
  </channel>
</rss>

