11-07-2021 11:41 PM
Hi,
I'll be doing an ISE upgrade for a client soon and we want to make sure we have the AD user account credentials to hand so we can rejoin ISE to AD if we need to after the upgrade.
The client is not sure what account was used when it was set up.
I'm assuming ISE uses that account each time it does a user or group lookup right?
Is there any way to find this out from a log or something what account is being used?
Thanks,
Matt.
Solved! Go to Solution.
11-08-2021 12:20 AM - edited 11-08-2021 03:04 AM
@mattw Actually no, the credentials that are used for the join or leave operation are not stored in Cisco ISE. Only the Cisco ISE machine account credentials are stored. It's this ISE machine account thats created in AD that is used to communicate between ISE and AD.
11-08-2021 12:20 AM - edited 11-08-2021 03:04 AM
@mattw Actually no, the credentials that are used for the join or leave operation are not stored in Cisco ISE. Only the Cisco ISE machine account credentials are stored. It's this ISE machine account thats created in AD that is used to communicate between ISE and AD.
11-08-2021 02:50 AM
Thank you @Rob Ingram.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide