Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I am working on configuring X.509 certificate authentication for a group of C93180YC-FX3 systems and seem like I'm coming up short on documentation. The single document I have found indicates that I have to create individual users with the certificat...
I have a Jinja template that I am currently attempting to apply via API. The workflow I have verifies via command-runner the output of a few commands associated with dhcp snooping to ensure the system will not break if the template below is applied. ...
I've been leveraging the command runner API to gather data on our network for analysis/parsing via python. In most instances I am able to use piped commands "show run | inc interface | description" or similar to retrieve data, pass into python, and p...
Version: 3.1
Patch: 8
Old cluster: SNS-3655
New Nodes: SNS-3755
I am working on integrating three new ISE servers into our existing cluster in preparation for lifecycle replacements. Prior to pulling the node into the cluster I perform the following:...
Model: FPR1120Version: 7.4.2I am in the process of attempting to lock down shell access to basic so that our ACAS system can safely access the FTD per our scan policy.
We have configured RADIUS to work with both the FMC and FTD and can successfully l...
Catalyst center does not like to show details on authentication (this appears to be the no no word). This may be due to FIPS being enabled or is a safeguard in general. In case anyone else runs into the issue- a successful workaround is"show run | in...
Having integrated quite a few API scripts into our environment I can say that there is a significant amount of data that can be obtained. I would recommend first starting with the Developer Toolkit under Platform. This will allow you to browse the va...
Unfortunately, I think I will need to open a TAC. I regenerated the Root CA and the ISE Messaging cert for all nodes with no results. When attempting to conduct a manual sync-up I receive an error "unable to sync node". I also agree that the issues d...
@Arne Bier all DNS records were created. I can resolve to host and resolve to IP. As far as NTP all devices are synced and operational. The nodes in question are operational (2 nodes are being replaced and a 3rd node is being added in preparation for...
Not related to your issue-
I would recommend looking into increasing your group level if possible. Recommended is a minimum of group 14 as anything lower is considered insecure.