08-17-2021 03:53 AM
Hi,
I am looking for an overview of ISE functionality in the case a customer has no (or plans for) DNAC.
so what are we missing in a ISE-only deployment (with Cisco Cat9K switches).
Can we still do all the AAA functions, (micro) segmentation, SGT's, assign policies to SGT's etc ?
many thanks !
Solved! Go to Solution.
08-17-2021 08:37 AM
As far as I know you should be able to do everything without DNAC. We don't do SGTs, but we do AAA, TACACS, dACLs etc with no issues. We just pulled out DNAC due to licensing costs.
08-17-2021 08:37 AM
As far as I know you should be able to do everything without DNAC. We don't do SGTs, but we do AAA, TACACS, dACLs etc with no issues. We just pulled out DNAC due to licensing costs.
08-17-2021 10:48 AM
Hi @tedens,
As @Dustin Anderson said, you can do all of mentioned with pure ISE deployment. DNAC should brign additional automation on top of your existing equipment, but all functionalities are still there.
BR,
Milos
08-18-2021 07:11 PM
I agree with Milos and Dustin.
https://cs.co/ise-videos has a playlist of Cisco ISE Intro and should get you started and the ISE Webinars playlist gives you deep dive into different topics.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide