10-22-2020 10:13 PM
Hi Guys,
We have 4 node distributed ISE 2.4 deployment (2 PAN + 2 PSN) and these are in production used for device authentication & wireless authentication. For various reasons we have to change the domain name on the ISE.
1. Is there a way to change the domain name on all 4 nodes.
2. What could be the implications of changing the domain name.
The ISE uses self-signed certificate & going forward we want to register with CA server.
Thanks,
Kiran
10-23-2020 02:27 AM
To change the domain name on ISE I think you need to take each node out of the deployment, make it a standalone node, and then apply the command ip domain-name from CLI. This change would imply reassigning the certificates to the features, since the certificates would be tied to the domain name.
10-23-2020 02:44 AM
Thanks Aref for the reply. Do you see any other impact on system functionality based on our deployment.
10-23-2020 03:04 AM
You welcome. I don't think there will be any. As long as the new certs and the DNS records on your AD are in place you should be good to go.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide