03-02-2017 06:39 AM
Experts, I have an issue while syncing a PSN node in a distributed deployment, I tried a manual sync and it failed so I tried to unregister and register again with no luck, checking at the replication log I see these errors:
2017-03-02 00:47:53,892 ERROR [pool-1722-thread-1][] cisco.epm.fullsync.primary.PrimarySyncManager -:admin:d0995c20-feeb-11e6-bcb5-0242d88e3992:FullSync:- D
B Export failed with return code non zero, throwing Exception.
2017-03-02 00:47:53,892 ERROR [pool-1722-thread-1][] cisco.epm.fullsync.primary.PrimarySyncManager -:admin:d0995c20-feeb-11e6-bcb5-0242d88e3992:FullSync:- F
ailed to process Sync request.
ISE version: 2.2 (originally it was 1.3 and it was upgraded to 2.1 then 2.2)
Nodes: 3 nodes (2 redundant PAN and Mnt + 1 PSN)
I appreciate any help,
Erika
03-03-2017 05:14 AM
You might want to check if the certificates that are trusted for ISE communication are still valid.
Administration > Certificates > Trusted Certificates
Under the Trusted For field, look for certs that have Infrastructure. I believe those are the ones that ISE will use to communicate between nodes.
03-03-2017 10:32 AM
I am working offline with Erika on this.
01-16-2018 11:42 AM
Any lessons learned that you have to share?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide