<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: MnT Node not receiving logs from PSN in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5352281#M599213</link>
    <description>&lt;P&gt;You can use the command "application reset-config ise", that will retain the network settings.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/3-2/cli_guide/b_ise_CLI_Reference_Guide_32/b_ise_CLIReferenceGuide_32_chapter_01.html#wp1727183819" target="_blank"&gt;Cisco Identity Services Engine CLI Reference Guide, Release 3.2 - Cisco ISE CLI Commands in EXEC Mode [Cisco Identity Services Engine] - Cisco&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 04 Dec 2025 09:25:07 GMT</pubDate>
    <dc:creator>Aref Alsouqi</dc:creator>
    <dc:date>2025-12-04T09:25:07Z</dc:date>
    <item>
      <title>MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5350383#M599102</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hi All,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have a 2-node deployment:&lt;/SPAN&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;Node A&lt;/STRONG&gt; – Admin (Primary), MnT (Primary), PSN&lt;/SPAN&gt;&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;Node B&lt;/STRONG&gt; – Admin (Secondary), MnT (Secondary), PSN&lt;/SPAN&gt;&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;SPAN&gt;After migrating Node B to another site, we changed its IP address and then deregistered it from Node A. However, Node B is still showing as a secondary node. I was expecting it to become standalone. Could you advise how I can change Node B to standalone so that I can change the certeficate and DNS also and register again?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Nov 2025 08:35:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5350383#M599102</guid>
      <dc:creator>henokk60</dc:creator>
      <dc:date>2025-11-27T08:35:49Z</dc:date>
    </item>
    <item>
      <title>Re: MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5350385#M599103</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1753581"&gt;@henokk60&lt;/a&gt;&amp;nbsp;hi, what is your ISE version? i found this guide for this kind of scenarios.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/network-access-control/forcing-ise-node-to-standalone/td-p/3519860" target="_blank"&gt;Solved: forcing ISE node to standalone - Cisco Community&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;if its not working, you may do the factory reset for Node B.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Nov 2025 08:54:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5350385#M599103</guid>
      <dc:creator>Kasun Bandara</dc:creator>
      <dc:date>2025-11-27T08:54:35Z</dc:date>
    </item>
    <item>
      <title>Re: MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5350550#M599109</link>
      <description>&lt;P class="lia-align-justify"&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1753581"&gt;@henokk60&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;1st deregister the Node B from the Cluster (at Administration &amp;gt; System &amp;gt; Deployment &amp;gt; select Node B and click Deregister)&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Deregister Node.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/255916iAAE8467B9896068B/image-size/large?v=v2&amp;amp;px=999" role="button" title="Deregister Node.png" alt="Deregister Node.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;2nd migrate Node B to another Site, changing its IP Address during the process&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;3rd register Node B again to Node A's Cluster&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;About "&lt;EM&gt; ...&amp;nbsp;&amp;nbsp;how I can change Node B to Standalone ...&lt;/EM&gt; ", if Node B was properly deregister, you are able to change the Certificate and DNS.&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;About "&lt;EM&gt; ...&amp;nbsp;Node B is still showing as a Secondary Node ...&lt;/EM&gt; ", do you mean that you are able to see Node B on Node A's Cluster ?&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;Note: please take a look at:&amp;nbsp;&lt;A href="https://community.cisco.com/t5/security-knowledge-base/ise-what-we-need-to-know-about-dns-server/ta-p/5242034" target="_blank" rel="noopener"&gt;ISE - What we need to know about DNS Server&lt;/A&gt;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;Hope this helps !&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Nov 2025 21:10:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5350550#M599109</guid>
      <dc:creator>Marcelo Morais</dc:creator>
      <dc:date>2025-11-27T21:10:50Z</dc:date>
    </item>
    <item>
      <title>Re: MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5351468#M599162</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/17232"&gt;@Marcelo Morais&lt;/a&gt;&lt;BR /&gt;Node B is deregistered from the cluster and no longer appears in it. However, when I log in to the Node B GUI, the Deployment tab still shows its role as Secondary, and the FQDN and IP address displayed are also the old ones. In my opinion, in order to establish trust between Node A and Node B and add it back to the cluster, Node B must first be in standalone mode. Otherwise, the option to generate the CSR is not available. So how can I make the secondary role to standalone?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="henokk60_0-1764656034281.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/256111iBCD8DE043C4E640A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="henokk60_0-1764656034281.png" alt="henokk60_0-1764656034281.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Dec 2025 06:16:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5351468#M599162</guid>
      <dc:creator>henokk60</dc:creator>
      <dc:date>2025-12-02T06:16:08Z</dc:date>
    </item>
    <item>
      <title>Re: MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5351555#M599165</link>
      <description>&lt;P&gt;If you want to convert that node to a standalone node then you can just click the "Promote to Primary" button and then afterwards that button will show "Make Standalone" where you can click on it and make it a standalone node. Here is couple of posts of mine that might help:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://bluenetsec.com/promote-ise-secondary-pan-to-become-the-primary/" target="_blank"&gt;Promote ISE Secondary PAN to Become the Primary&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://bluenetsec.com/adding-a-secondary-ise-node/" target="_blank"&gt;Adding a Secondary ISE Node | Blue Network Security&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Dec 2025 09:56:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5351555#M599165</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2025-12-02T09:56:27Z</dc:date>
    </item>
    <item>
      <title>Re: MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5351856#M599181</link>
      <description>&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1753581"&gt;@henokk60&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;something weird must have happened for&amp;nbsp;&lt;STRONG&gt;Node B&lt;/STRONG&gt;&amp;nbsp;not to be deregister when you use the "deregister process" on &lt;STRONG&gt;Node A&lt;/STRONG&gt; (the &lt;STRONG&gt;PPAN&lt;/STRONG&gt;).&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;You can use the&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/284594"&gt;@Aref Alsouqi&lt;/a&gt;&amp;nbsp;suggestion or you can :&lt;/P&gt;
&lt;UL class="lia-align-justify"&gt;
&lt;LI class="lia-align-justify"&gt;install &lt;STRONG&gt;Node B&lt;/STRONG&gt; from scratch (version and patch)&lt;/LI&gt;
&lt;LI class="lia-align-justify"&gt;on &lt;STRONG&gt;Node A&lt;/STRONG&gt;, register &lt;STRONG&gt;Node B&lt;/STRONG&gt; again to the Cluster.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;Note: installing from scratch has the benefit of eliminating any existing "garbage" in &lt;STRONG&gt;Node B&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;Hope this helps !&lt;/P&gt;
&lt;P class="lia-align-justify"&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Dec 2025 05:28:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5351856#M599181</guid>
      <dc:creator>Marcelo Morais</dc:creator>
      <dc:date>2025-12-03T05:28:21Z</dc:date>
    </item>
    <item>
      <title>Re: MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5352270#M599212</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/17232"&gt;@Marcelo Morais&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/284594"&gt;@Aref Alsouqi&lt;/a&gt;&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/182793"&gt;@Kasun Bandara&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;Is there a command to reset the config only without reseting the IP and DNS?&lt;/P&gt;</description>
      <pubDate>Thu, 04 Dec 2025 08:23:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5352270#M599212</guid>
      <dc:creator>henokk60</dc:creator>
      <dc:date>2025-12-04T08:23:33Z</dc:date>
    </item>
    <item>
      <title>Re: MnT Node not receiving logs from PSN</title>
      <link>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5352281#M599213</link>
      <description>&lt;P&gt;You can use the command "application reset-config ise", that will retain the network settings.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/3-2/cli_guide/b_ise_CLI_Reference_Guide_32/b_ise_CLIReferenceGuide_32_chapter_01.html#wp1727183819" target="_blank"&gt;Cisco Identity Services Engine CLI Reference Guide, Release 3.2 - Cisco ISE CLI Commands in EXEC Mode [Cisco Identity Services Engine] - Cisco&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 04 Dec 2025 09:25:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/mnt-node-not-receiving-logs-from-psn/m-p/5352281#M599213</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2025-12-04T09:25:07Z</dc:date>
    </item>
  </channel>
</rss>

