cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
135
Views
0
Helpful
1
Replies

Cisco ISE Network Devices

Netmart
Level 3
Level 3

Hello,

For some reason, a AAA Tacacs request is hitting the wrong TACACs profile, instead of Priv15, Priv Lev1 is assigned.

I checked this particular node and it appears to be present as /32 in one device group and as /20 in a second one:

Network Device List sequence:

Link: Administration > Network Resources > Network Devices List

#1 List: 10.23.140.100/32

#6 List: 10.23.128.0/20

What approach does ISE take in Network Device List:

Top to bottom and/or the one with longest prefix match.

 

Please advise.

Thanks.

 

1 Reply 1

Greg Gibbs
Cisco Employee
Cisco Employee

Longest prefix match