cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4550
Views
0
Helpful
3
Replies

Cisco ISE Nodes Synchronization Problem.

Andrew Mathu
Level 1
Level 1

Hello,

 

We have an ISE deployment running ISE version 2.3. We recently deployed ISE patch five to the setup. Afterwards, only the Primary admin node became connected. Under Administration > Deployment, the rest of the nodes show "Not in Sync" with an orange warning next to them

 

.A manual snyc using Syncup does not resolve the issue as the nodes go to the state "In Progress" and this can last up to three hours, after which they revert back to the "Not in Sync" error.

 

The nodes are: Primary Admin, Secondary Admin, PSN1, PSN2 and a pXGrid node. Only the primary admin node shows the "Green" connected icon. When we check the status of the patch 5 on the individual nodes using "show version" in CLI it indicates it has the patch. The ISE admin node under Administration > Maintenance > Patch management shows all the nodes received the patch when we select it and display " Show Node Status".

 

We have checked the network connectivity and all is okay. All nodes can reach each other and there is no latency/jitter. DNS  is resolvable from all nodes by using nslookup. There is also no firewall in between to block communications.

 

When we removed patch five from one of the PSN nodes and reverted back to patch 4, there was still no change and the error "In progress" persisted.

 

What could be the issue?

3 Replies 3

check all the node NTP is syn to NTP server.

please do not forget to rate.

Yeah, Make sure both are synchronized with NTP, and if you still have issues then Deregister and add it back.

I have also face same issues version 2.3. ISE nodes not sync expect Primary PAN Node show green. NTP,DNS are fine. Please suggest.