Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I need to migrate a Cisco ISE deployment consisting of 1 PAN, 1 SAN, and 3 PSNs, for a total of 5 nodes. The goal is to move all VMs from VMware to Nutanix.My migration plan is to first move the PSNs one by one, verifying that services are operating ...
Hi,What steps you will follow to do this migration? Can an ISE primary run on VMware and an ISE secondary instance run on Nutanix coexist forming a deployment? someone did this migration? help!!!!
I have a two-node Cisco ISE cluster. I need to change the current OVA deployment size to Medium.My plan is to deregister the secondary node, reinstall it using the Medium OVA, apply the basic configuration (hostname, IP address, etc.), and then add i...
Hi,I need to add a third node to ISE deployment. When i go to PAN to register new node. I introduce FQDN, user, pass but i receive this error: Certificate Signature Verification failed CN= Company1 CAROOT, DC=Company1, DC=com: FQDNI verified that the...
Hi,I need to add a third node to ISE deployment. When i go to PAN to register new node. I introduce FQDN, user, pass but i receive this error: Certificate Signature Verification failed CN= Company1 CAROOT, DC=Company1, DC=com: FQDNI verified that the...
So you recommend to export VMWARE ISE system cert (admin/eap) and import in new in NUTANIX. Or directly go forward and register node using the own new self signed cert
Hi,I checked and there is no external/company CA. I think all system certificates was issued by Internal CA ISE Please, confirm. i attach the screenshots:My doubt if i need to export anything from VMware ISE and import Nutanix ISE. I thought to expor...
Thanks. Before adding to the cluster i will need to import CA root and intermeddiate customer and the certificate for EAP and ADMIN from old image ISe. Right?
Yes. I have all chain CAroot and intermediate in PAN,SAN and new node. The different thing is that the certificates for the PAN and SAN nodes were signed by a different Root CA and using SHA1 (these devices were installed many years ago). The new ISE...