02-28-2017 11:17 AM - edited 03-11-2019 12:30 AM
Hello,
I add to deploy additonal node and it sync fine with primary, Now on WLC I add as radius server also IP secondary node.
Now sometime when I doing BYOD onboarding and request sent to secondary node, I receive back invalid user/pass, to authenticate username I use my AD in external identity. If I disable in WLC secondary node every things work fine again.
Seems that secondary node can't speak with AD to process authentication.
Can you have some idea ? thanks
M.
Solved! Go to Solution.
02-28-2017 04:34 PM
If you go to the External Identity Source page, do you see the secondary node as joined to the Active directory? If not, you can try running the inbuilt diagnostic tool to troubleshoot why the secondary PSN is not talking to the AD correctly.
http://www.cisco.com/c/en/us/td/docs/security/ise/1-3/ISE-ADIntegrationDoc/b_ISE-ADIntegration.html#task_013E23768CF044F08C0DAF93902F5D0D
02-28-2017 04:34 PM
If you go to the External Identity Source page, do you see the secondary node as joined to the Active directory? If not, you can try running the inbuilt diagnostic tool to troubleshoot why the secondary PSN is not talking to the AD correctly.
http://www.cisco.com/c/en/us/td/docs/security/ise/1-3/ISE-ADIntegrationDoc/b_ISE-ADIntegration.html#task_013E23768CF044F08C0DAF93902F5D0D
03-01-2017 08:26 AM
Hello,
it's work now, thanks very much.
M.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide