cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
468
Views
0
Helpful
3
Replies

Limiting ISE Management Access

Leroy Plock
Level 1
Level 1

Greetings,

Q1: Is there any way to limit access to the ISE management functionality to a specific physical interface on the appliance?

Q2: If the answer to Q1 is no, I see that we can limit access to specific IP ranges. If we do this, does it apply to the CLI as well as the web gui?

 

Thanks.

3 Replies 3

jan.nielsen
Level 7
Level 7

Yes,it is how it works by default. Only gigabitethernet 0 can be used for management of ISE, other services like guest, can be moved to other interfaces.

That's good news, thank you.

Venkatesh Attuluri
Cisco Employee
Cisco Employee

Cisco ISE management is restricted to Gigabit Ethernet 0.

Cisco ISE Appliance Ports Reference

http://www.cisco.com/c/en/us/td/docs/security/ise/1-2/installation_guide/ise_ig/ise_app_c-ports.html