Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi all,
I saw a conversation about this from a few years ago. Can someone at Cisco please confirm if ISE supports EAP-SIM, EAP-AKA, or EPS-AKA, of if there are plans to do so.
If not, do enterprises still have to rely on CPAR, and how would that int...
Hi,
I've noticed something strange on the ISE livelogs and wondering if it's a bug or a feature. On some of my Session () entries on the livelog i get Authentication details, whereas others are showing me Accounting details.
I thought the Session en...
I'm really trying to find numbers on this. I have a scenario where many users will be going through a single access port, and i need to understand the limitations wrt concurrent authz sessions on a port, for mab and 802.1x.
Can someone point me to th...
Hi all,
I'd be interested to know people's thoughts on what's currently the most stable ISE version. I've seen 2.2 mentioned as it's now on it's 9th patch so a lot of work has gone into stabililty there, does anyone else have an opinion?
thanks
Hi,
As Anyconnect NAM isn't supported on MACos, what is the best option for doing certificate based 802.1x with Macs and ISE (with meraki wireless)
thanks
Hi, can someone at Cisco please give the the definitive answer for this please. Please don't try to second guess the architecture, at this stage i just simply need to know if ISE supports EAP-SIM, EAP-AKA, or EPS-AKA, of if there are plans to do so....
Hi, all the successfully authz'd sessions that have accounting detailed report available are showing 'Session state is authenticated' under event, whereas those sessions that only have the authentication detailed report are showing 'session state sta...
Hi Thomas thanks for the comments, they are hugely helpful, and yes, sorry you are right i should have defined the requirement better. There will be several authz profiles, so we can't leverage vlans; we will have to use DACLS, we could possibly get ...
just assume there are many users (possibly hundreds) connecting via a hub, and it is not possible to replace that hub with a .1x enabled switch. This isn't actually what's going on, but for the purposes of this discussion it suffices as a description...
Hi, thanks for the response. This isn't for the usual campus Lan environment, so this is not the usual poor design (daisychaining) scenario. I can't really say much more than that, other than to say there in the environment we can only do what we nee...