Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other troubleshooting best practices.

Labels

Forum Posts

Dear sir   we are planning to procure low cost switch for NAC implementation    Please suggest low price switch model. I heard two models 2960x and 2960 plus are available. which one is better or any other better switch model?

Ciscospy by Visitor
  • 3063 Views
  • 4 replies
  • 0 Helpful votes

I have ISE 2.2 patch 2 in a 3 node deployment. If I shutdown the interface of one the node there is a delay in system summary to mark it Unavailable in the PAN GUI.Even the Health Status Unavailable alarm generated was about 20 minutes after the inte...

raghchan by Cisco Employee
  • 1848 Views
  • 6 replies
  • 1 Helpful votes

Hello all.  I am attempting to add ISE 2.3 into our test environment and use it as the internal CA.  We currently are using a Windows CA successfully but would like to transition away from it. We are using devices that can not go through the onboardi...

dgerali by Frequent Visitor
  • 1097 Views
  • 1 replies
  • 0 Helpful votes

Hi all, I am working on a POV where I need to create an authorization rule that is the following:If “NameOfTheLocation” contains “AD Group that the user belongs” (string comparison) then AccessWhich gives the following: But I realized it does not wor...

rvacher by Cisco Employee
  • 2156 Views
  • 10 replies
  • 1 Helpful votes

Hi Team,I read ISE-PIC FAQ and I see it supports maximum of 100 domain controllers. But does it support more than 1 AD domain ? If yes, what is the maximum ?Thanks a lotFabio

fpanada by Cisco Employee
  • 1016 Views
  • 2 replies
  • 0 Helpful votes

Resolved! cwa redirect issue

Hello Everybody;i have cisco ise 2.1 and cisco 2504 wlc (8.2.141 ver) on my environmentwhen i connect the ssid for the first time , i am redirected to CWA page. however when i close the browser , reopen it and try to open any page the redirection fai...

coskun sanli by Frequent Visitor
  • 1163 Views
  • 2 replies
  • 1 Helpful votes

Hi Expert, I am running a ISE POC with customer doing guest portal and sponsor portal. The guest flow and sponsor approval flow as below. (1) guest get redirect to self-registration portal and key in his info plus the email address of the sponsor (2)...

jpoh by Cisco Employee
  • 6611 Views
  • 17 replies
  • 0 Helpful votes

I noticed that ISE is not setting the DSCP value for Radius or any other communication. On our switches we mark RADIUS with DSCP CS6, but the RADIUS accept messages from the ISE PSN’s use CS0 (0000 0000).   Is there an option to mark this traffic on ...

Oswin Peters by Frequent Visitor
  • 1994 Views
  • 1 replies
  • 0 Helpful votes

Hello,I fully understand how ISE interface alias works for Portal services on non-Eth0. My question is regarding EAP Cert using Public CA. I will use the following scenario:ISE hostname = ise1.company.localEAP SAN = ise1-aaa.company.comInterface = Et...

grabonlee by Level 9
  • 2305 Views
  • 6 replies
  • 1 Helpful votes