We are implementing Security Tags with an ASA and ISE. We have generated the PAC and imported it into the ASA and they in sync. The Security Groups are present in the ASA, but the IP to Security Group Mapping that was manually placed in ISE aren't downloaded. We have configured the WLC as a speaker and these mappings are dynamically updated on the ASA. Does the ASA need to additional configuration, ie does ISE need to be configured as a peer for the static mappings to be downloaded?
Please advise,
Joe