10-30-2019 08:15 PM
Hi,
I am using ISE version 2.4 and it has a connection to the Active Directory by using a domain admin account to integrate with the ISE. However I have been instructed to change the domain admin account. So I am guessing that I will require to do the same to the ISE deployment right and edit the password? I have read up in past discussions that it will not impact the ISE cause it is a one time thingy. So my question is, I just wanted to make sure it will not impact the ISE cause I wouldn't want any disruptions to the network.
Regards
Thanks in advance.
Solved! Go to Solution.
10-30-2019 10:09 PM - edited 10-30-2019 10:09 PM
The user account you used to join ISE to active directory is not used for anything other than the join operation. When the credentials are typed in to join ISE to AD, ISE creates a machine object for every node that you join. From that point forward, ISE leverages the machine account for lookups.
You can change the domain admin account with no impact to ISE. ISE does not save the username/password you used.
10-30-2019 10:09 PM - edited 10-30-2019 10:09 PM
The user account you used to join ISE to active directory is not used for anything other than the join operation. When the credentials are typed in to join ISE to AD, ISE creates a machine object for every node that you join. From that point forward, ISE leverages the machine account for lookups.
You can change the domain admin account with no impact to ISE. ISE does not save the username/password you used.
10-30-2019 10:43 PM
Hi Damien,
Thanks for your input. That really helps.
Regards
Hanif
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide