Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi community, In my DNAC I cannot see any traffic flows when: 1. under SGT policy -> pick a policy-> view traffic2. Under the Analytics, I can see SG groups and ISE profiles numbers, but click it in there is no traffic flows. I need to understand the...
Hi Einar,Thanks for the informative tip.Actually, I think some devices may support NETCONF but they don't support YANG model. I am running a Nexus 7700 (NX-OS) on version 8.1, what I can get is some XML data from NX-API models, not really YANG.
In the ISE authorization profile, along with "permit" access there are many options. There is one named as "auto-smart-port".
If you write the trigger string in the profile and configure a script with this trigger string on the switch, when the EP i...
With ISE normally the deployment is switch wide, so to enable it globally can simplify the port configuration.
When dot1x is enabled on an interface, the Cisco auto macro will not run until ISE tells the switch so. It is a bit inconvenient but acce...
Hi Benjamin,
In my understanding the per-vrf label method is meant to save resource on a PE devices on label allocation. Imagine there is a PE devices with only a few VPN but a lot of local prefixes, under per-VRF label allocation this device would ...
It is a handy feature and it works in this way:
1. client DHCP DISCOVER in the vrf VLAN and the the SVI 200 get it. As the ip helper address is configured here, the switch knows it is going to relay this DISCOVER packet to the server.
2. The switch ...