<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ISE in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4520190#M571758</link>
    <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1171234"&gt;@Amen&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The closest I have found and used in the past is &lt;A href="https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/212594-debugs-to-troubleshoot-on-ise.html" target="_self"&gt;this link here&lt;/A&gt;. It tells you which debugs to enable &lt;STRONG&gt;&lt;EM&gt;per problem category.&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;You can always tail the log output on the CLI instead of downloading the support bundle.&lt;/P&gt;
&lt;PRE&gt;show logging application&lt;/PRE&gt;
&lt;P&gt;and then tail the file you're debugging on&lt;/P&gt;
&lt;PRE&gt; show logging application ise-psc.log tail&lt;/PRE&gt;</description>
    <pubDate>Thu, 16 Dec 2021 21:19:05 GMT</pubDate>
    <dc:creator>Arne Bier</dc:creator>
    <dc:date>2021-12-16T21:19:05Z</dc:date>
    <item>
      <title>Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4519997#M571749</link>
      <description>&lt;P&gt;I'm looking for some assistance please. I'm struggling to find a table which details what each log file's purpose is on the CLI. For example:&lt;/P&gt;&lt;P&gt;What log files must I look at to troubleshoot active directory issues?&lt;/P&gt;&lt;P&gt;What log files must I look at to troubleshoot replication issues across the ISE deployment?&lt;/P&gt;&lt;P&gt;What log files must I look at to troubleshoot patch upgrade status on a particular node?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm looking for something like this:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;TABLE border="0" cellspacing="0" cellpadding="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;P&gt;&lt;STRONG&gt;Log file name&lt;/STRONG&gt;&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;P&gt;&lt;STRONG&gt;Function/purpose&lt;/STRONG&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;&lt;P&gt;replication.log&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;P&gt;All replication status/updates that happen throughout the ISE deployment and any errors that might occur.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This information would need to cover both system and application based logs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can someone point me in the right direction please?&lt;/P&gt;</description>
      <pubDate>Thu, 16 Dec 2021 16:03:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4519997#M571749</guid>
      <dc:creator>Amen</dc:creator>
      <dc:date>2021-12-16T16:03:29Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4520190#M571758</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1171234"&gt;@Amen&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The closest I have found and used in the past is &lt;A href="https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/212594-debugs-to-troubleshoot-on-ise.html" target="_self"&gt;this link here&lt;/A&gt;. It tells you which debugs to enable &lt;STRONG&gt;&lt;EM&gt;per problem category.&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;You can always tail the log output on the CLI instead of downloading the support bundle.&lt;/P&gt;
&lt;PRE&gt;show logging application&lt;/PRE&gt;
&lt;P&gt;and then tail the file you're debugging on&lt;/P&gt;
&lt;PRE&gt; show logging application ise-psc.log tail&lt;/PRE&gt;</description>
      <pubDate>Thu, 16 Dec 2021 21:19:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4520190#M571758</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2021-12-16T21:19:05Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4520397#M571779</link>
      <description>&lt;P&gt;your answer is perfect if the issue is still happening, but what if i want to know the root cause like for example why&amp;nbsp;&lt;/P&gt;&lt;P&gt;ISE Primary PAN did not sync secondary PAN about the new trusted certificates ? I solved the issue by doing a manel sync up but i want to know why this happened?&lt;/P&gt;&lt;P&gt;where i can check for that?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you so much for your support&lt;/P&gt;</description>
      <pubDate>Fri, 17 Dec 2021 08:00:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4520397#M571779</guid>
      <dc:creator>Amen</dc:creator>
      <dc:date>2021-12-17T08:00:04Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4520751#M571793</link>
      <description>&lt;P&gt;If you're looking at root cause analysis then you can still use that Cisco link as a guide to find your way through the various log files ISE creates. ISE is constantly logging something. And the logs can be downloaded individually from the UI&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Operations &amp;gt;Troubleshoot &amp;gt; Download Logs &amp;gt; Debug Logs&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Or download a bunch of logs called a Support Bundle&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Operations &amp;gt;Troubleshoot &amp;gt; Download Logs &amp;gt; Support Bundle (tick the boxes, choose a date range)&lt;/P&gt;
&lt;P&gt;If you're lucky enough, then the default logging level (normally "INFORMATIONAL") will provide some clues (assuming you have found the appropriate log file). But most of the time, INFO level won't tell you enough. So you need to crank up the Log Level to more detailed level - e.g. DEBUG (used in TAC cases). Then wait for the problem to happen again.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you're a curious and patient person, then perhaps you'll find some clues. But I would recommend opening a TAC case - TAC engineers have tools to sift through the debugs and provide better insights - because they may have seen this problem before.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 17 Dec 2021 20:18:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/4520751#M571793</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2021-12-17T20:18:23Z</dc:date>
    </item>
  </channel>
</rss>

