<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Using ISE to authenticate a Juniper Switch in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279420#M595884</link>
    <description>&lt;P&gt;You can update that, just make sure to create the NAD in ISE using the Juniper profile. We have some older Juniper switches/routes that are using ISE as TACACS. I have attached the Juniper dictionary if you don't have that and the network device profile you will need to import if you also don't have that.&lt;/P&gt;</description>
    <pubDate>Tue, 08 Apr 2025 17:17:03 GMT</pubDate>
    <dc:creator>Scott Fella</dc:creator>
    <dc:date>2025-04-08T17:17:03Z</dc:date>
    <item>
      <title>Using ISE to authenticate a Juniper Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279337#M595881</link>
      <description>&lt;P&gt;Community,&lt;/P&gt;&lt;P&gt;We have a Juniper Core switch model&amp;nbsp;qfx5100-48s-6q in our environment.&amp;nbsp; All of our other switches are Cisco.&amp;nbsp; We are currently rolling out ISE to use for TACACS+ authentication.&amp;nbsp; Currently the Juniper is configured in Aruba Clearpass which we are replacing with the Cisco ISE.&amp;nbsp; I am trying to determine if i can create a Juniper Device in ISE under Network Devices, and have it authenticate to ISE vs. Clearpass.&amp;nbsp; Does anyone else have experience authenticating Juniper devices within Cisco ISE?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To me it looks like i could simply modify the commands already configured on the Juniper that allow it to talk to Aruba Clearpass, which are:&amp;nbsp;&lt;/P&gt;&lt;P&gt;set system tacplus-server 192.168.1.163 port 49&lt;/P&gt;&lt;P&gt;set system tacplus-server 192.168.1.163 secret "XXXXXXXXXXXXXXXXXXX"&lt;/P&gt;&lt;P&gt;set system tacplus-server 192.168.1.163 single-connection&lt;/P&gt;&lt;P&gt;set system tacplus-server 192.168.1.163 source-address 10.1.0.3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;KMNRUser&lt;/P&gt;</description>
      <pubDate>Tue, 08 Apr 2025 13:36:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279337#M595881</guid>
      <dc:creator>KMNRuser</dc:creator>
      <dc:date>2025-04-08T13:36:01Z</dc:date>
    </item>
    <item>
      <title>Re: Using ISE to authenticate a Juniper Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279405#M595882</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; - FYI :&amp;nbsp;&lt;A href="https://www.juniper.net/documentation/us/en/software/nce/nce-213_ex_and_cisco_ise/topics/topic-map/nce-213-ex-series-switch-cisco-ise.html" target="_blank"&gt;https://www.juniper.net/documentation/us/en/software/nce/nce-213_ex_and_cisco_ise/topics/topic-map/nce-213-ex-series-switch-cisco-ise.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; M.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Apr 2025 16:10:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279405#M595882</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2025-04-08T16:10:39Z</dc:date>
    </item>
    <item>
      <title>Re: Using ISE to authenticate a Juniper Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279420#M595884</link>
      <description>&lt;P&gt;You can update that, just make sure to create the NAD in ISE using the Juniper profile. We have some older Juniper switches/routes that are using ISE as TACACS. I have attached the Juniper dictionary if you don't have that and the network device profile you will need to import if you also don't have that.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Apr 2025 17:17:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279420#M595884</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2025-04-08T17:17:03Z</dc:date>
    </item>
    <item>
      <title>Re: Using ISE to authenticate a Juniper Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279433#M595885</link>
      <description>&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;Thanks for responding.&amp;nbsp; When you have indicated that "you can update that"..what are you referencing that i can update?&amp;nbsp; Thank you!&lt;/P&gt;&lt;P&gt;KMNRUser&lt;/P&gt;</description>
      <pubDate>Tue, 08 Apr 2025 17:01:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279433#M595885</guid>
      <dc:creator>KMNRuser</dc:creator>
      <dc:date>2025-04-08T17:01:39Z</dc:date>
    </item>
    <item>
      <title>Re: Using ISE to authenticate a Juniper Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279448#M595886</link>
      <description>&lt;P&gt;Update your switch/route config to point to ISE.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;set system tacplus-server 192.168.1.163 port 49&lt;BR /&gt;set system tacplus-server 192.168.1.163 secret "XXXXXXXXXXXXXXXXXXX"&lt;BR /&gt;set system tacplus-server 192.168.1.163 single-connection&lt;BR /&gt;set system tacplus-server 192.168.1.163 source-address 10.1.0.3&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;Just make sure your "secret" is the same when you add the NAD to ISE.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Apr 2025 17:37:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/using-ise-to-authenticate-a-juniper-switch/m-p/5279448#M595886</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2025-04-08T17:37:01Z</dc:date>
    </item>
  </channel>
</rss>

