Network Access Control

Cisco Identity Services Engine (ISE), Cisco Access Manager (CAM), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other troubleshooting best practices.

Labels

Forum Posts

I am trying to build TACACS. If each site has about 500 switches ISE 2 (China) (main)<-> ISE 1 (Korea) (backup)ISE 3 (USA) (main)<-> ISE 1 (Korea) (backup)ISE 4 (EU) (main)<-> ISE 1 (Korea) (backup)ISE 5 (Canada) (main)<-> ISE 1 (Korea) (backup) Is i...

Hi, I have an issue with the bulk import feature of the iPSK Manager. It shows green icons against specific MAC entries but in the same time - the import itself is failed:I have noticed that endpoints are added to the "endpoints" table in the databas...

piogra_0-1662021945259.png
pio.gra by Level 2
  • 1632 Views
  • 4 replies
  • 0 Helpful votes

Hi, I am new to Cisco ISE. Trying to set up authentication and authorization based on the certificate but it's not working. I have configured my router for the AAA model as well my test laptop got a certificate. I have uploaded the same root cert to ...

AbrarMukit_0-1662078502930.png
AbrarMukit by Community Member
  • 3804 Views
  • 7 replies
  • 0 Helpful votes

I am trying to figure out how to get ISE to not add endpoints on a subnet. We are currently using the trial version which limits to 100 endpoints. The issue is that ISE keeps adding our IP phones in before it adds any of our workstations. I would lik...

gcook0001 by Level 4
  • 1181 Views
  • 4 replies
  • 0 Helpful votes

Dear All,I am starting to install a new Cisco Ise Deployment, with two Nodes, Primary and Secondary.My question is about the external CA signed Certificates that should be imported on the two ISE Nodes.I know that ISE needs different certificates for...

ifabrizio by Level 5
  • 2615 Views
  • 5 replies
  • 0 Helpful votes

Hi First, sorry if this gets confussing but Cisco in their wisdom use the ALL_ACCOUNTS tag for Identity Groups and Sponsor Groups...   I think a may have found a bug on ISE2.2 (Patch 7).   I have an ISE Internal User account for a Sponsor Administrat...

Basically, what we want to do is assign an endpoint (using MAC address) to an identity group via API. We tried the API guide to create an endpoint. However, if ISE has already learned the MAC address for some reason (e.g. device has already tried to ...

reggie_obos by Frequent Visitor
  • 1945 Views
  • 1 replies
  • 0 Helpful votes

Hi, I've a quick question about registering ISE with a smart account.We have Essential and Premier licenses, when registering ISE with our smart account, what tiers to we select?Essentials and Premier or do we need to select Advantage as well as Prem...

M. Wisely by Level 9
  • 1699 Views
  • 4 replies
  • 0 Helpful votes