cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
679
Views
5
Helpful
2
Replies

Firepower user Agent

Nick Currie
Level 1
Level 1

Hi there i have a quick question regarding the Firepower User Agent. I have read in the documentation that if you require to monitor more than 5 AD servers you are required to install another User Agent. However i was attending Melbourne Cisco Live recently - and in the Firepower NGFW internet Edge Deployment Scenario's Breaksec-2050 session, I was specifically told that if I want to monitor more than 5 AD servers - i will be required to us either ISE or ISE-PIC...

 

I really dont want to have the added complexity of implementing ISE to our environment to use passive identity authentication... can someone please confirm which is correct?

2 Replies 2

Marvin Rhoads
Hall of Fame
Hall of Fame

The person either misunderstood the question or gave incorrect advice.

 

If you want to monitor more than 5 servers from a single agent then you need ISE or ISE PIC.

 

Multiple instances of Cisco User Agent (installed on separate computers) can be used as well.

Thanks for clearing that up!

Review Cisco Networking for a $25 gift card