05-24-2018 02:15 AM
Hi,
I have a large implementation of ISE in a distributed deployment with 2 ISEs for PAN and 2 for MnT and centralized PSNs in multiple regions which will cover alot of branches.
Q1:
what is the best practice for deploying PSNs "16 PSN , 4 in each region" is it over loadbalancer or i can point switches to them normally ? if we use loadbalancer is there any known issues we should take care of especially we will deploy most of ISE features "guest access ,BYOD ,profiling, posture, TrustSec ... etc"
Q2:
in case of failure of any PSN or multiple PSNs or even the entire region what will be the best practice to design the switches with and without loadbalancer.
thanks in advance.
Solved! Go to Solution.
05-24-2018 06:01 AM
This is all covered in BRKSEC-3699 session from ciscolive.com (Reference version)
05-24-2018 06:01 AM
This is all covered in BRKSEC-3699 session from ciscolive.com (Reference version)
05-24-2018 06:30 AM
Thanks a lot chyps
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: