03-19-2019 10:21 PM
Hi,
Just a quick question. When an end device has been disconnected from the switch port, I can still see in the ISE console that the device still shows up but the status is disconnected and the last connection. When will ISE refresh and purge the device?
03-20-2019 02:07 AM
ISE doesn't purge endpoints unless you manually delete them or run a Purge job based on certain criteria. But e.g. there is no criterion for deleting endpoints that have UNKNOWN endpoint Group. Those have to be manually deleted or via REST API.
03-20-2019 05:03 AM
Are you sure about the unknown MACs? In your purge rule don't specify an endpoint identity group and set Inactive days >90 or whatever value you want. This assumes you have reauthentication properly configured so the inactivity timer is accurate.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide