Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

Labels

Forum Posts

Hi,   I'm having some trouble understanding what are the sources for ISE to retrieve devices' IPs from. Let's say that I have a device that accesses the network and gets a dynamic IP address from the DHCP server. Then, ISE registered both the MAC and...

orp by Level 1
  • 1986 Views
  • 2 replies
  • 0 Helpful votes

Hello everyoneIn Admin guide says that even ISE supports 65,535 SGTs the maximum recommended is 4,000. The question is: when the devices (switches, routers, ASA, etc) download the environment data from ISE is there a limit depending on the device typ...

ecanogut by Cisco Employee
  • 4852 Views
  • 4 replies
  • 1 Helpful votes

Hi there, I have a requestor asking about the following information: If IOS XE 16.6.3, 16.6.4, 16.8.1a are supported with ISE 2.1 Patch 7 (or other patch).   I've checked the following links but they have not provided me with confirmation regarding s...

esell by Level 1
  • 443 Views
  • 1 replies
  • 0 Helpful votes

Is there anyway to force TLS 1.2 in ISE 2.3 patch 5? We recently installed patch 5 to remedy a bug and I was hoping to be able to remedy a vulnerability. Our vulnerability scans show TLS 1.0 open on both our PSN and Admin nodes. and under Admin->Sett...

plauzon by Level 1
  • 700 Views
  • 2 replies
  • 0 Helpful votes

Resolved! DHCP Probe FQDN

We are getting FQDN information from the DHCP probe.  When we click on the host/device, we can see the FQDN in the Device Profile.  Is there a way to run a report that will list all devices with the associated FQDN?

Resolved! ACS on 3595 to ISE

MY customer has two ISE appliances (3595) running ACS 5.8. I understand they will need the Device Admin license and 100 base licenses, but is there any other license they will need to run ISE on the 3595 appliances?   Thank You.

Hello,   I have a switch port configured to authenticate with order first MAB and then dot1X. The priority has been setup in the opposite way, first dot1X then MAB. I would like to re-authenticate devices (phones in this case) but it seems when I run...

victguti by Level 1
  • 6995 Views
  • 2 replies
  • 0 Helpful votes