cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1713
Views
15
Helpful
2
Replies

Cisco ISE 3.1 High-availability

absuizo14
Level 1
Level 1

Greetings,

 

We are currently using ISE for our captive portal. the redirection URL was registered to the DNS server and translates to the Primary's IP address but if the the primary goes down we would have to manually change the DNS config to the Secondary's IP. Is there a feature like Virtual IP or anything like VRRP/HSRP?

 

1 Accepted Solution

Accepted Solutions

@absuizo14 if you do not have a Load Balancer you can be creative in ISE. You can create Authorisation Profiles pointing to each PSN FQDN, then create 2 Authorisation rules matching on the hostname of the PSN authenticating the session and redirect to the URL.

 

This guide demonstrates what I am referring to:- https://integratingit.wordpress.com/2020/01/19/ise-guest-access/

 

View solution in original post

2 Replies 2

balaji.bandi
Hall of Fame
Hall of Fame

we use external portal with LB, so it easy to manage, in your case it different. check below thread :

 

https://community.cisco.com/t5/network-access-control/ise-2-4-sponsor-guest-portal-and-multiple-psns-failover/td-p/4603617

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

@absuizo14 if you do not have a Load Balancer you can be creative in ISE. You can create Authorisation Profiles pointing to each PSN FQDN, then create 2 Authorisation rules matching on the hostname of the PSN authenticating the session and redirect to the URL.

 

This guide demonstrates what I am referring to:- https://integratingit.wordpress.com/2020/01/19/ise-guest-access/

 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: