TACACS+ and RADIUS integrated node performance TPS

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-01-2018 07:06 AM - edited 08-01-2018 07:08 AM
Dear all,
i have some old figures showing Transactions per second (TPS) for ISE2.0 running on a shared PAN/MnT.
A separate PSN running as integrated (i.e.TACACS and RADIUS running on one node). Hence we have two nodes (1x PANMnT and 1 x PSN (TACACSandRADIUS)
are there any figures or estimates for ISE2.4 and for that matter anything higher than v2.0?
regards
Henk
- Labels:
-
Identity Services Engine (ISE)

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-01-2018 07:42 AM
Take a look at this document It talks about 2.2 - 2.4:

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-01-2018 08:56 AM
hi Cory
have seen that already. It doesn't have what I need. (it has TACACS dedicated and RADIUS dedicated).
regards
Henk

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-01-2018 09:27 AM
The number is very subjective and would land somewhere in the middle of the two numbers for RADIUS and TACACS. It is heavily based on the use cases around TACACS and if it is just human interaction or if they use any type or automation that will execute commands much more rapidly than a human.
Thomas has a really good post on it and has some calculations around the scale of TACACS and if you situation would do better with a dedicated or combined node approach.
https://community.cisco.com/t5/security-documents/ise-tacacs-deployment-sizing-guidance/ta-p/3612253
