DNA & ISE Integration Issue - setup looks right but no save option in DNAC/GBAC configuration window
Hi all, anyone shed any light on a weird issue we've been seeing with our DNAC cluster (running 1.3.3) and ISE (2.6) whereby we can join DNAC and ISE together okay but we can't get DNAC to manage policy and set ISE to read-only, the save button is blanked out?
Basically we've gone through the steps of building ISE and enabling PXGRID, ERS, SSH, CA signed certs and auto-approving new connections in ISE and everything gets added correctly - we see online/active nodes in both DNAC and ISE and certs exchanged as we'd expect........but DNAC seems to be stuck when it comes to actually taking controlling of ISE (or vice versa).
We had an issue before so ripped out ISE and rebuilt the ISE nodes from scratch and since then DNAC seems to be stuck in a weird state of allowing the new AAA servers to be added (as per build docs) but not being able to administer ISE?
Attached is a screenshot from DNAC/Policy but it looks the same as if ISE hasn't actually been added - obviously DNAC says ISE is ACTIVE and ISE see's DNAC in PXGRID correctly.
Just wondering if anyones seen this issue or knows how to completely delete ISE out of DNAC (including all backend objects) so we can re-add it without having to do a DNAC rebuild? Have a TAC case out but not getting much traction.
I have Cisco IOS router which is used configured for Internet access for users.The router acts as DNS server & also the name-server in configured. The router is also configured as DHCP server.Also 1 particular VLAN say VLAN 100(192.168.100.0/24) is al...
Welcome to the overview guide that covers the latest in Cisco Networking innovations and new product introductions. You'll find information on promotions and free trials, as well as exclusive upcoming product deep-dive sessions in the Networking and Data...
(Pdf copy at the bottom)
Segmentation within SD-Access is enabled through the combined use of both Virtual Networks (VN), which are analogous to VRFs, and Cisco Scalable Group Tags (SGTs). VNs, like VRFs, provide comp...
The 2020 IT Blog Awards, hosted by Cisco, is now open for submissions through October 16. Submit your blog, vlog or podcast today. For more information, including category details, the process, past winners and FAQs, check out: https://www.cisco...
Hello,We have a pair of N3K-3064PQ-10GX and one of them acting as backup and we want to migrate from VyOS to it, we want to add 500x interface vlan and each interface vlan has its own ip/prefixes (for example /30 /29 ...) and we ahve 6-8x BGP session with...