05-07-2020 09:10 AM
Hello team. I have a customer with a distributed ISE 2.6 deployment. PANs/MnTs are located in the Chicagoland area, with remote PSNs in London and Singapore. The Singapore PSN RTT is ~260ms. How can they best monitor replication performance for the international PSNs? They have an occasional log message about replication taking a long time, and are getting ready to go Live with 802.1x wired/wireless and just want to make sure they can monitor this situation. Any advice is greatly appreciated!
Solved! Go to Solution.
05-07-2020 04:41 PM
05-07-2020 04:25 PM
The main alerting mechanisms in ISE are either the Alarm Settings where you can setup SMTP notifications and Syslog where you can send the alerts to an external SIEM to have it do the correlation and notification.
There are alarms for Replication-related events such as Replication Slow Info/Warning/Error available in the Alarm Settings. These alarms could be sent to an admin or mailer via SMTP.
You could also configure an external Syslog server with the option for 'Include Alarms For This Target' enabled in the External Logging Targets. You would then need to ensure the necessary Logging Category was enabled (in this case, the Administrative and Operational Audit category) for the Target.
Outside of ISE, the customer could also monitor the network RTT between Chicago and remote sites using IP SLA or something similar. They should also ensure that RADIUS is prioritised over best effort traffic in their end-to-end QoS policy.
05-07-2020 04:41 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide