Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, we are getting the high authentication latency with one particular SSID, the latency is due to the policy forwarding to an external cloud based RADIUS server and there is nothing i can do about the latency, all other wired and wireless networks d...
Hi, i have a customer with two virtual FMC appliances which obviously dont support native HA, and the underlying hypervisor also doesnt have any failover mechanisms, and will never have this. As a workaround i thought about using the RestAPI with Pyt...
Im having some trouble with an ISE deployment using MAR, the alternative is to use EAP chaining but this requires Anyconnect 3.1, however i cant find any info on whether the client is suppported on Win7 Embeded (Wyse Terrminals)Help would be apprecia...
Hi.A customer im working with has an internal server running on SSL port 443. Standard.They want connections to the public facing interface on a non standard port, port address translating through to 443.Its running 8.2(1)so will this work? the serve...
Hi, Heres my situation.We have switches, routers and ASAs in our network, and 2 x ACS 5.2 over two locations.All devices authenticate using AD via ACS failing to our remote ACS should there be a failure, this works fine on all types of management con...
I'm having real issues with these modules. Even with a simple policy they don't seem to be reliable. I've installed/migrated/upgraded the appliances and have no such issues, but every SFR module I've put in is becoming a nightmare. I've found that th...
The plot thickens!So, forgotting the idea of disabling it from the console completely, i dont think i can do this.The 2 servers in the group should be marked as "down" and then the LOCAL method is used. This worksbut..they immediately come back up af...
I have already created a method list as per below:"aaa authorization command ACS LOCAL"Unless i misunderstand what a method list is. The above "list" performs command authorization as per policies on our ACS, if the ACS is not responding then it uses...
CBAC is configured so the external ACL is pretty locked down. Only the static nat traffic is permitted through, as well as ESP and ISAKMP. So the "deny" will be catching anything else. Although i usually configure some BOGON filters, just not in this...