cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1836
Views
0
Helpful
1
Replies

ISE 2.0 Kernel Hardening

algoldst
Cisco Employee
Cisco Employee

Hello ISE Team

I have a partner asking about the underlying OS in ISE, and if there is any document(s) talking about the OS for ISE 2.x that I can reference for the hardened linux kernel?

Thank you

1 Reply 1

howon
Cisco Employee
Cisco Employee

Alex, we don't share specifics, but any unnecessary linux packages are removed and we implement firewall rules that only allows necessary traffic. Also, we have CLI features that can be implemented by customer to harden ISE further:

- conn-limit: To configure the limit of incoming TCP connections from a source IP address

Cisco Identity Services Engine CLI Reference Guide, Release 2.0 - Cisco ISE CLI Commands in Configuration Mode [Cisco I…

- rate-limit: To configure the limit of TCP/UDP/ICMP packets from a source IP address

Cisco Identity Services Engine CLI Reference Guide, Release 2.0 - Cisco ISE CLI Commands in Configuration Mode [Cisco I…

Hosuk