cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1577
Views
0
Helpful
2
Replies

Using ISE 1.2 as Radius Server for ISE 2.6 Guest Access

Amoritz
Level 1
Level 1

Hi everyone, 

 

I have an ISE 1.2 which support Guest Access. It is impossible to upgrade it because we can't loose the option which permit to active the account at the first login (the option isn't in the 1.4 and 2.0 version and the upgrade activate all the accounts which aren't still active). 

 

So, we decided to add an new ISE in 2.6 which will support all the configuration of the ISE 1.2, but we need to keep the ISE 1.2 to reach his guest account database. But, in ISE 1.2 I can't add a Radius Client, only Radius Token and this method cannot be used as an identity source. 

 

Maybe there is another way to do ?

 

Thanks for your help !

2 Replies 2

I am not sure I quite understand what you mean is missing in new versions which is present in 1.2?  If it is just that you want the account to become active when the user first logs in, this is done by first defining a Guest Type where you set the account duration from first login and then reference this Guest Type in the Guest Portal configuration.

 

Capture.JPG

 

You can also have a read through this document for more information on setting this up in newer versions.

https://community.cisco.com/t5/security-documents/ise-guest-access-prescriptive-deployment-guide/ta-p/3640475

--
Please remember to select a correct answer and rate helpful posts

Hi, 

 

Thanks for your reply. 

 

It's not what i mean. I'm actually trying to make this configuration (option2) : https://community.cisco.com/t5/security-documents/moving-from-other-guest-database-systems-to-ise/ta-p/3640898

But, it's not possible because i can't add the ISE 2.6 as a Radius Client in the ISE 1.2. 

 

 

Review Cisco Networking for a $25 gift card