04-01-2020 09:59 PM
Hello,
I'm using the ISE 2.3 and I would like to know how can I remove the MAC address from internal database
in the condition of that MAC not access or not online for 90 days?
Thank you in advance.
Solved! Go to Solution.
04-01-2020 10:18 PM - edited 04-01-2020 10:21 PM
This is a fairly easy task to accomplish with the built in endpoint purge options. What you do have to be cautious of though is if you have any endpoint assigned to static identity groups. A simple rule such as the one I have in the example screenshot will remove any endpoint that has been inactive for 90 days including ones manually added or statically assigned.
If the endpoint comes back after 91 days, it will no longer be "whitelisted". This can be a problem if interim accounting is not set up, coupled with no reauth interval or endpoints that are always connected and rarely power cycled.
04-01-2020 10:18 PM - edited 04-01-2020 10:21 PM
This is a fairly easy task to accomplish with the built in endpoint purge options. What you do have to be cautious of though is if you have any endpoint assigned to static identity groups. A simple rule such as the one I have in the example screenshot will remove any endpoint that has been inactive for 90 days including ones manually added or statically assigned.
If the endpoint comes back after 91 days, it will no longer be "whitelisted". This can be a problem if interim accounting is not set up, coupled with no reauth interval or endpoints that are always connected and rarely power cycled.
03-14-2023 02:13 AM
Hello,
has anyone ever had ise automatically deleting mac addresses assigned to static groups without having set a purge rule?
I randomly find that I can no longer find some devices although no one has manually purged them and I can't find any bugs or reasons for this situation.
Ise version is 3.0 with patch7
04-01-2020 10:19 PM
Hi,
Go to your Identity Management , Identities, The Identity Group you're looking for and you should be able to delete some or all.
Regards,
Cristian Matei.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: