05-01-2018 02:43 PM
I've seen some references to a 15 character hostname limit in ISE when connecting to AD. Is this still the case? Something to do with Centrify? Also there is this bug id CSCtx57316
Thanks
Solved! Go to Solution.
05-01-2018 02:57 PM
According to the ISE 2.4 install guide:
05-01-2018 02:57 PM
According to the ISE 2.4 install guide:
Hostname | Must not exceed 15 characters. Valid characters include alphanumerical (A–Z, a–z, 0–9), and the hyphen (-). The first character must be a letter.
|
05-01-2018 08:21 PM
For a more detailed response this boils down to active directory, there is a confusion with computer objects when the exceed 15 characters.
Issues with computer objects and netbios so if the first 15 characters are the same then you have all sorts of issues with multiple nodes with AD communication. During my days with TAC this was a common issue when ACS 5 first came out.
05-02-2018 08:28 AM
Since ISE 1.3, it's possible to exceed 15 characters but it's still better to limit to 15 characters.
Per DE, ISE 1.3+ search for accounts using both DNS and short name when joining. The limitation in ISE 1.2 or prior was due to the 3rd-party AD runtime so it might be OK with longer ones although not exhaustively checked.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide