<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco NAC policy sync in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-nac-policy-sync/m-p/1537057#M811917</link>
    <description>&lt;P&gt;I have a failover CAM configured, one is configured as the Master and the other one is receiver.&lt;/P&gt;&lt;P&gt;when I do manual sync between them this is what happen:&lt;/P&gt;&lt;P&gt;Successfuly completed pre-sync check with 10.10.80.248&lt;/P&gt;&lt;P&gt;then I click continue it fails to sync:&lt;/P&gt;&lt;P&gt;this is the log :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*************** Master Log ***************&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Starting policy import/export on Policy Sync Master.&lt;/P&gt;&lt;P&gt;Created dump file for policy: Device Management &amp;gt; Filters &amp;gt; Devices (all Access Types other than ROLE and CHECK)&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; User Roles &amp;gt; List of Roles/Schedule&lt;/P&gt;&lt;P&gt;Created dump file for policy: Device Management &amp;gt; Clean Access &amp;gt; Clean Access Agent &amp;gt; Role-Requirements&lt;/P&gt;&lt;P&gt;Created dump file for policy: Device Management &amp;gt; Filters &amp;gt; Devices (Access Type ROLE and CHECK only)&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; Traffic Control &amp;gt; IP&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; Traffic Control &amp;gt; Host&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; Traffic Control &amp;gt; Ethernet&lt;/P&gt;&lt;P&gt;Dump file creation is complete.&lt;/P&gt;&lt;P&gt;Created policy import/export dump file. &lt;/P&gt;&lt;P&gt;No file available for policy sync as large object.&lt;/P&gt;&lt;P&gt;Created&amp;nbsp; policy import/export header file. &lt;/P&gt;&lt;P&gt;Created policy import/export tar file. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*************** Receiver Log ***************&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Starting policy import on Policy Sync Receiver.&lt;/P&gt;&lt;P&gt;Hash value is a match. &lt;/P&gt;&lt;P&gt;Policy Sync Master and Receiver CAM versions match. &lt;/P&gt;&lt;P&gt;The Policy Sync Reciever is not active, Please retry policy sync later. &lt;/P&gt;&lt;P&gt;Failed to store all policies on Policy Sync Receiver.&lt;/P&gt;&lt;P&gt;Receiver failed sync&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 12:08:57 GMT</pubDate>
    <dc:creator>a7med_magdy</dc:creator>
    <dc:date>2020-02-21T12:08:57Z</dc:date>
    <item>
      <title>Cisco NAC policy sync</title>
      <link>https://community.cisco.com/t5/network-security/cisco-nac-policy-sync/m-p/1537057#M811917</link>
      <description>&lt;P&gt;I have a failover CAM configured, one is configured as the Master and the other one is receiver.&lt;/P&gt;&lt;P&gt;when I do manual sync between them this is what happen:&lt;/P&gt;&lt;P&gt;Successfuly completed pre-sync check with 10.10.80.248&lt;/P&gt;&lt;P&gt;then I click continue it fails to sync:&lt;/P&gt;&lt;P&gt;this is the log :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*************** Master Log ***************&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Starting policy import/export on Policy Sync Master.&lt;/P&gt;&lt;P&gt;Created dump file for policy: Device Management &amp;gt; Filters &amp;gt; Devices (all Access Types other than ROLE and CHECK)&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; User Roles &amp;gt; List of Roles/Schedule&lt;/P&gt;&lt;P&gt;Created dump file for policy: Device Management &amp;gt; Clean Access &amp;gt; Clean Access Agent &amp;gt; Role-Requirements&lt;/P&gt;&lt;P&gt;Created dump file for policy: Device Management &amp;gt; Filters &amp;gt; Devices (Access Type ROLE and CHECK only)&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; Traffic Control &amp;gt; IP&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; Traffic Control &amp;gt; Host&lt;/P&gt;&lt;P&gt;Created dump file for policy: User Management &amp;gt; Traffic Control &amp;gt; Ethernet&lt;/P&gt;&lt;P&gt;Dump file creation is complete.&lt;/P&gt;&lt;P&gt;Created policy import/export dump file. &lt;/P&gt;&lt;P&gt;No file available for policy sync as large object.&lt;/P&gt;&lt;P&gt;Created&amp;nbsp; policy import/export header file. &lt;/P&gt;&lt;P&gt;Created policy import/export tar file. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*************** Receiver Log ***************&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Starting policy import on Policy Sync Receiver.&lt;/P&gt;&lt;P&gt;Hash value is a match. &lt;/P&gt;&lt;P&gt;Policy Sync Master and Receiver CAM versions match. &lt;/P&gt;&lt;P&gt;The Policy Sync Reciever is not active, Please retry policy sync later. &lt;/P&gt;&lt;P&gt;Failed to store all policies on Policy Sync Receiver.&lt;/P&gt;&lt;P&gt;Receiver failed sync&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 12:08:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-nac-policy-sync/m-p/1537057#M811917</guid>
      <dc:creator>a7med_magdy</dc:creator>
      <dc:date>2020-02-21T12:08:57Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco NAC policy sync</title>
      <link>https://community.cisco.com/t5/network-security/cisco-nac-policy-sync/m-p/1537058#M811918</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please note that this feature is not meant to be used between 2 CAMs of an HA pair.&lt;/P&gt;&lt;P&gt;As you can see on the config guide:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/nac/appliance/configuration_guide/48/cam/m_admin.html#wp1050935"&gt;http://www.cisco.com/en/US/docs/security/nac/appliance/configuration_guide/48/cam/m_admin.html#wp1050935&lt;/A&gt;&lt;SPAN&gt;,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="pBu1_Bullet1"&gt; - All CAMs must run release 4.5 or later to enable Policy Sync.&lt;/P&gt;&lt;P class="pBu1_Bullet1"&gt; - On CAM HA-pairs, Policy Sync settings are disabled for the Standby CAM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, this means you can use this feature only in active CAMs or Standalone CAMs.&lt;/P&gt;&lt;P&gt;In HA pairs, Only the Active CAM will be active for this feature.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH,&lt;/P&gt;&lt;P&gt;Tiago&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV class="jive-rendered-content"&gt;&lt;DIV class="jive-rendered-content"&gt;&lt;P&gt;--&lt;/P&gt;&lt;P&gt;If&amp;nbsp; this helps you and/or answers your question please mark the question as&amp;nbsp; "answered" and/or rate it, so other users can easily find it.&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Nov 2010 10:52:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-nac-policy-sync/m-p/1537058#M811918</guid>
      <dc:creator>Tiago Antunes</dc:creator>
      <dc:date>2010-11-08T10:52:27Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco NAC policy sync</title>
      <link>https://community.cisco.com/t5/network-security/cisco-nac-policy-sync/m-p/1537059#M811919</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks for your response&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 11:47:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-nac-policy-sync/m-p/1537059#M811919</guid>
      <dc:creator>a7med_magdy</dc:creator>
      <dc:date>2010-11-09T11:47:22Z</dc:date>
    </item>
  </channel>
</rss>

