20k and 40k limits mentioned in the scaling guide represent maximum amount of sessions stored in the session cache. After limit is reached PSN performs Least Recently Used (LRU) algorithm to remove older sessions.
While theoretically to frequent ex...
There is no need to redirect endpoints if policies are configured in the proper way.
There are two important things which need to be added for multi-MDM scenario when there are endpoints which were registered out-of band:
1. MDM server name attribu...
Hi Tom.
What you've mentioned here is actually inline with what I've noticed in one of the customer's cases recently. I don't think that this is the same case which has been mentioned here since ISE and AnyConnect versions are different, But
What...
In case you would like to see it on diagram it's explained in this document -https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine-22/210523-ISE-posture-style-comparison-for-pre-and.html#anc5
Section - Posture Flow Pre ISE 2....