Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi all,i'm dealing with a strange behaviour for profiling (with device-sensor) in ISE 2.7. Cisco config for LLDP filter list is shown below:device-sensor filter-list lldp list LLDP_LIST
tlv name port-id
tlv name system-name
tlv name system-descrip...
Hi all,i'm facing a problem with Profiling and device sensor. In particoular, using show device-sensor cache all command i see that some stranger values are appended in front of the expected value. The figure shows the output. Proto Type:Name ...
Hi all,i'm trying to understand a very strange behaviuor of a Catalyst 3650. The switch authenticates user by using ISE 2.7. I configured some authorization profile, on of which is dedicated for IP phones. This profile contains a voice VLAN assignmen...
Hi all,i'm stuck with a problem related to DHCP packets. The architecture is composed by:VXX 201 IP phone which is connected to the catalyst 3650 on gigabit 1/0/46(it authenticate via MAB)Catalyst 3650 which has a trunk interface (gigabit 1/0/48)ISE ...
Hi all,i'm facing some problems with DHCP snooping config. The scenario is the following. An IP phone is attached to the Catalyst 3650 switch. The switch has a SPAN port that has as source interface g1/0/46 (interface to which the phone is connected)...
Thanks Marce1000, but this problem happen only with this type of device. I tried also with 2 different types of IP phones (Yealink T40G and Yealink T23G) and profiling was successful.
So i configured a simple template like you said. I used the following commands:template TEST_NAC
switchport voice vlan 707Thein in ISE (in AuthZ profile page) i turned off the VLAN option while i leaved checked Voice Domain Permission and Interface ...
I could disabled LLDP, however lldp cannot be turne off in a production environment. SO iven if it would works, it could not be possibile to implement this solution. I will try with the template solution.Thanks for you reply
First of all thank you for all the precious information that you are giving to me. I'm an associate figure so i don't know as much you do.1) You said that "Sending any VLAN ID/Name in an ISE Authorization Profile will never achieve the goal of overr...