Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We are using Cisco ISE to do EAP-TLS authentication from a 3rd party solution. The vendor's documentation states "The NAS ID will be sent in the RADIUS NAS-Identifier attribute of the Access-Request. The RADIUS server uses it to identify this Mobilit...
Looking to move from LWA to CWA for wireless guest access.
Have a separate DNS appliance with a subdomain it’s authoritative for: guest.example.com
On the certificate side, we have a CN=ise.example.com and SAN=ise.example.com and *.example.com used c...
Looking to move from LWA to CWA for wireless guest access.
Have a separate DNS appliance with a subdomain it’s authoritative for: guest.example.com
On the certificate side, we have a CN=ise.example.com and SAN=ise.example.com and *.example.com used c...
Have a 6 node deployment; 3 nodes in DC1 and 3 nodes in DC2. PAN primary is in DC1 and MnT is in DC2. 2 PSN per DC.
Wireless controllers are centralized at the DCs and therefore, the wireless client VLANs are local to the DC.
We use AD sites and ser...
I know this is a Cisco forum but a lot of talented people visit these sites and may hopefully be able to point me in the right direction.
We are trying to implement a new Bluecoat Proxy ASG running version. The intent is to use the same proxy for mor...
Octavian, thanks for the response. So ISE will use whatever domain controller is shown under Administration > External Identity Sources > Active Director. Sites and services has no bearing on the process.
As far as the wireless clients "sites and s...