cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
610
Views
0
Helpful
1
Replies

ISE MACSEC

Donald Fisher
Cisco Employee
Cisco Employee

Is there a way to report on clients that successfully have negotiated MACsec and those that have not?

1 Reply 1

thomas
Cisco Employee
Cisco Employee

MACsec negotiation is an option in ISE Authorization Profiles:

image.png

 

However I'm unaware of an ISE audit mechanism since we tell the switch the MACsec policy and it is for the switch to enforce with the endpoint. You might see if there are SYSLOGs thrown from the switch for MACsec negotiation and collect those on a central server for reporting.