11-12-2020 05:38 AM
Hello All,
I need to know is there a way where in i can switch from IBNS2.0 style of configuration to IBNS1.0 style of configuration on the new IOS XE switches.
I did try the command "authentication display legacy", however, this command is not executing.
need some urgent help.
Regards,
Vijay
Solved! Go to Solution.
11-12-2020 07:14 AM
Straight from Cisco documentation:
Enter a Identity-Based Networking Services configuration command—After you enter the first explicit Identity-Based Networking Services command, the configuration converts to C3PL display mode permanently and legacy commands are suppressed. The authentication display command is disabled and you can no longer revert to the legacy configuration mode.
Here are some links that may help:
http://www.network-node.com/blog/2017/10/7/ise-c3pl-switch-configuration
HTH!
11-12-2020 09:13 AM
I agree with that, no graceful IBNS 2 to IBNS 1 reversion process. But there is one destructive method for doing this, write erase the configuration and reload without saving. Of course this is a huge impact, Vijay, only do it if you have a console cable and are on site.
11-12-2020 07:14 AM
Straight from Cisco documentation:
Enter a Identity-Based Networking Services configuration command—After you enter the first explicit Identity-Based Networking Services command, the configuration converts to C3PL display mode permanently and legacy commands are suppressed. The authentication display command is disabled and you can no longer revert to the legacy configuration mode.
Here are some links that may help:
http://www.network-node.com/blog/2017/10/7/ise-c3pl-switch-configuration
HTH!
11-12-2020 09:13 AM
I agree with that, no graceful IBNS 2 to IBNS 1 reversion process. But there is one destructive method for doing this, write erase the configuration and reload without saving. Of course this is a huge impact, Vijay, only do it if you have a console cable and are on site.
11-13-2020 03:55 AM
Thanks both.
I could see there are only two options available to switch
1. In lower end switches like 3850, there are some service templates which gets created along with few parameter maps. If these are removed, then the configuration style is switching to legacy
2. In few case, even after doing #1, it isn't working. So we renamed the existing start up configuration as old and created a new startup configuration removing these service templates and parameters maps. This works, but it is very time consuming and any mistake will lead to an outage. So considering recreating the LLD is the final option left.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide