Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello, I recently inherited a C6880-X VSS Cluster in one of our buildings for doing maintenance and software upgrade. Nobody really wanted to do it because there are over 400 access ports attached ... But I think it is necessary for security reasons....
Good day all, I'm having some trouble understanding the reauthentication timers or configuration on IOS and ISE.We are using the "Closed Mode"-deployment, where we authenticate clients with certificates or mac address and security groups in Active Di...
Hello,we're currently migrating from ACS 5.8 to ISE 2.2 in a pure MS Windows environment with MS Active Directory and MS Windows Server PKI for internal purposes. Every domain joined endpoint gets provisioned with a client-certificate over group poli...
Hello, we're currently migrating from ACS 5.8 to ISE 2.2 and I was wondering, if it is possible to profile the devices that are not authenticated on a switch interface/ISE. Our authentication is vlan-based without dACL or SGT.Or if there is a better ...
Thanks for the answer.My FEX are all dual homed. I read that ISSU article but it only describes the minor upgrade path.The ROMMON currently is 15.1(02)SY01. If I go the traditional way can I take the big step? I didn't find anything related to ROMMON...
After a port bounce the authentication timer was set to N/A.I disabled authentication periodic on another interface and then the timer was 3600s (local), even after port bounce... After I re-enabled server reauthentication timers the timer was set to...
I have noticed that MAB seems to always have a reauthentication timer and 802.1X sometimes... That's also what I've noticed in the repeat count report on ISE that most devices with repeats are MAB-Devices and sometimes in between there are 802.1X-Dev...