cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1145
Views
0
Helpful
1
Replies

ISE rollout from the beginning

Jonathan Rees
Level 1
Level 1

Hi,

Looking at the overall rollout of ISE across our organization.  As I understand it we start in monitor only mode (current) and from there we roll it out to wired first and the wireless afterwards (per Cisco use case).

I'm trying to figure out what our next step is.  As I see it we've got a lot of work ahead of us:

Configure switchports to support dot1x

configure ISE certificates and CAs

configure wired clients to use dot1x

configure devices that cannot do dot1x to use MAC

Review logs on ISE to ensure we didn't miss anything on the wired side

activate policies for wired

(similar process then for wireless and byod)

I'm having difficulty finding a doc that spells all the above out and the order in which it should be performed, so this is the best I've got.

Does anyone have any config docs or recommendations on how to make this go smoothly?

Thanks,

JonM

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

Cisco has published a series of "How To" guides.You can find them all here:

https://communities.cisco.com/community/technology/security/pa/ise

Look for Thomas Howard's postings, e.g.: https://communities.cisco.com/docs/DOC-68149

Also, Kat McNamara dis a nice series in that same space:

https://communities.cisco.com/people/katmcnam/content

View solution in original post

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

Cisco has published a series of "How To" guides.You can find them all here:

https://communities.cisco.com/community/technology/security/pa/ise

Look for Thomas Howard's postings, e.g.: https://communities.cisco.com/docs/DOC-68149

Also, Kat McNamara dis a nice series in that same space:

https://communities.cisco.com/people/katmcnam/content