Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We are in the middle of running a pilot for wired 802.1x. We are using Cisco ISE 2.3 and Cisco Catalyst 3850 switches. During some recent troubleshooting I noticed that on 802.1x enabled ports that mac-addresses are showing up as type 'STATIC' inst...
Hey All,
We currently run Cisco ISE 2.0 in standalone mode and we are looking to upgrade to version 2.3. I've done some reading on the upgrade and it feels straight forward based on the documentation.
However, almost every VAR I've talked to is ...
Just looking for a confirmation check here - don't do this nearly enough.
I have an existing Internet setup w/ (2) routers, connected to (2) ISPs running BGP. The routers each announce the same /24 block to each ISP. The Internet routers have a s...
Hi All,A scenario was recently presented to me that involved connecting two SANs between two Data Centers. One of the Data Centers is existing and utilizes Nexus 5K switches while the other Data Center will be greenfield and is currently just a shel...
Just a general question to the group on how one monitors Internet availability/reachability via an ASA.The scenario right now is we have a number of offices with Internet feeds (primarily DSL/Cable/T1) connected to ASAs and we have the goal of being ...
Thanks Paul for the confirmation. To your point - we can definitely lab this all out with little to no risk.
We were advised against going to 2.4 - I believe it had something to do with a license change w/ going to 2.0 to 2.4. I questioned it as ...
Hi Paul - Thanks for the reply.
I thought I remembered reading somewhere that configuration restores needed to be done to ISE instances of the same version - so it wouldn't be possible to restore a 2.0 backup onto 2.3.
Hi,
The Loopback isn’t addressed from the subnet that the router interfaces are addressed out of. Take a look at the diagram and you will see that the loopbacks would be addressed out of a subnet that is statically routed via the firewall.
That ...
I should have included this in my original post - which I will edit/update - but the Loopbacks are not for BGP. They are to support a future GRE tunnel.