Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
does anyone have experience with this or can perhaps guide me on this question If i have a Distribution device with 100 Edge device hanging off the Distribution all L3 and i want to enable Netflow to export flows to the collector. Isn't the distribut...
Has anyone done or know if this type of REP Topology would be supported in SD-Access and DNA-C. I know the individual REP rings are supported when connected to the same EDGE Node. but can you stretch the VN/VLAN (Enable Broadcast) across the fabric t...
If combining 2 ISE Personas on one VM or on one Appliance do i have to scale the VM up to accommodate. Example one admin node as a 3655 is spec (96GB + 600GB HD) but if i combine ADM+MNT+PXG do i need to scale up this node to cater for the extra pers...
Does anyone know what the minimum size of an ISE Medium Distributed Deployment is ? From Cisco Documentation i can only see that ISE 3.0 will support <=6 PSN when the PAN and MNT are combined as one persona. I want a Hybid deployment of PAN/MnT/PxGri...
Has anyone had experience with renewing their Admin Certificate on an ISE 2.6 distributed deployment ? We currently have a 12 node deployment and the Admin Cert has just expired. We need to renew the Cert and was wondering about the impact of doing t...
Hey Mate
Yes i have just deployed this setup. One DNAC at DC1 One DNAC at DC2 and witness VM at another Remote location.
to address a DNAC we used the following.
Ent IP addressEnt VIP Address
Cluster IP addressCluster VIP Address
Both separate subnet...
Good Question,
Cisco's documentation is not very clear on this. i also have two 9500 that i want to LAN automate.
Im going to approach it like thisLAN automate the two devices and any other Edge device that connects to them,
Then convert the two devi...
thanks for that Greg that clears it up. I wasn't sure how particular you could get with the AD groups. As we will be pushing an SGT to a user , based on their AD group. The machine will do cert based authentication
Hey seen this thread. I would be interested to see your Authorization policy that allows a certain user in a AD group to get an SGT and to get authorized while using eap-chaining and teap. Im trying to figure out the best Autz policy to create to aut...