cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3896
Views
10
Helpful
3
Replies

Does applying Log4j Hotfix cause downtime in Cisco ISE?

Mark DeLong
Level 4
Level 4

Hi,

 

I see nothing in the release notes for the ISE Log4j patch for Cisco ISE 2.4-3.0 (https://www.cisco.com/web/software/283802505/159582/README_Hotpatch_CSCwa47133_Log4j2-fix-2.4-3.0.txt) that mentions whether or not applying this patch causes downtime to the nodes during application (you apply it node by node).

 

Does anyone know if this patch causes downtime to ISE? Is this downtime just for the individual node it is being applied to or for the whole cluster (say when we apply to the MnT)? And is this downtime for all services (i.e. restart of ISE services) or just select services that Log4j affects (for example Portals or RADIUS).

 

Thanks in advance!

1 Accepted Solution

Accepted Solutions

Leo Laohoo
Hall of Fame
Hall of Fame

Yes, the services will restart.

View solution in original post

3 Replies 3

Leo Laohoo
Hall of Fame
Hall of Fame

Yes, the services will restart.

Thanks, Leo! We tried it in our ISE lab and found the same. Services restart on each node as its applied. THx!

Hi @Mark DeLong ,

 please take a look at the following post: ISE 2.7.0.356 log4j vulnerability.

 

Hope this helps !!!!