Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other troubleshooting best practices.

Labels

Forum Posts

Welcome to the Cisco Community Ask Me Anything EventWe invite you to participate in our upcoming Ask Me Anything (AMA) conversation. Please submit your questions from Thursday, April 23, 2026, through Thursday, May 7, 2026. Our experts Miguel Martine...

Hello Greg,  If I want to use below condition of cert like Common Name and OU what will be CAP Auth Profile config ? Specially Use Identity From Field in CAP ? I think I should only use Subject ? which will cover CN , OU.  @Greg Gibbs 

MSJ1_0-1768937761722.png
MSJ1 by Level 5
  • 440 Views
  • 2 replies
  • 0 Helpful votes

We have encountered an unexpected issue. Despite trying various troubleshooting methods, we have been unable to identify the root cause. We would appreciate expert guidance and recommendations.Problem SummaryWe are experiencing an issue with Cisco IS...

merloxuanyuan23_0-1768483193146.png

Hello,I've been poking around at the various ISE APIs including exporting endpoints via context visibility (CSV file exports) and not finding a way to export the endpoint WITH the inactivity days attribute.  We have devices that the users may not tel...

ryanmbess by Frequent Visitor
  • 1422 Views
  • 5 replies
  • 0 Helpful votes

I configured posture policy which use (windows 10(all)) as operating system criteria. and all posture conditions using windows 10 also. but windows 11 PCs still be scanned for posture. Note : posture requirements still in audit state. Can someone exp...

AAA184 by Level 2
  • 1260 Views
  • 4 replies
  • 0 Helpful votes

Resolved! ISE Patch Question

I have a 4 node deployment  - I plan on patching the via CLI and start with the PAN first - PSN Second and the Sec PAN third, but when the below question is presented do I need to say no in order to continue patching the remaining nodes individually?...

Post 3.4, patch 4, Replication stop between PAN and PSNs, error, Jediss replication failed, CLI access issue-error failed to connect to the server. throwing an error in the debug log : Error, Failed to connect to server, could not connect to test-ise...