cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
810
Views
1
Helpful
5
Replies

Configuring Cisco ISE in CLI

deepakramanath
Level 1
Level 1

I have a Cisco ISE 2.3 deployed as a standalone node for AAA. As a test only one network devide is configured with ISE to carryout the AAA processes.

I would like to know, if possible, how to configure Cisco ISE using the CLI. Is it possible to completely bypass the Admin web GUI and carryout every task via the CLI. For example, adding new network device, creating authentication and authorization policies, etc. using CLI.

Cisco ISE CLI reference guide does list some of the CLI options that ISE has, however, I could not find anything about adding network devices or policies.

5 Replies 5

hslai
Cisco Employee
Cisco Employee

ISE admin CLI performs mainly the management functions for the networking, and those can't be achieve by ISE admin web UI. It does not have every functions that carried by ISE admin web UI.

ISE has some ERS API for CRUD. Please enable ERS under ISE admin web > Administration > System > Settings > ERS Settings and read the on-box SDK documentation.

Jason Kunst
Cisco Employee
Cisco Employee

No, you might be able to do some of this via the api but likely not all of it

dmh
Level 5
Level 5

No, you cannot configure ISE functionality via the CLI. This must be done via the web UI or via the API.

The CLI basically lets you configure the system including interfaces, DNS, routing, start/stop/check the application status and view logs.

deepakramanath
Level 1
Level 1

Thank you for your responses.

I have managed to by-pass the GUI for a few things like add network device, join AD domain, etc using the ERS API. However, still seeing if TACACS+ profiles can defined using the API. I have posted a question in a separate thread about this latter thing.

T+ profiles are coming in ISE 2.4. Please check it out when ISE 2.4 FCS.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: