ISE PSN return back.

Hello

I have 2 ISE 1.2.1.189

I configured ISE1 (192.168.1.1) as primary for PAN, MNT and PSN and it work very well

and ISE2 (192.168.2.1) as secondary PAN, MNT and PSN

Under normal circumstances, users are authenticated on ISE1

My goal:

If ISE1 is not available, the user must authenticate on ISE2

Then, as soon as the ISE1 will again be available, user needs to be authenticated again on ISE1

I have it configured, but it does not work (see below my configuration)

dead-criteria 5 tent 3 times RADIUS server

RADIUS-server host 192.168.1.1 auth-port 1812 1813 key Password123 acct-port

RADIUS-server host 192.168.2.1 auth-port 1812 1813 key Password123 acct-port

When the ISE1 will again be available, user stay authenticated on ISE2

How to configure the switch to achieve my goal

Help, please

Thanks in advance

Authenticated sessions will not be affected by living/dead RADIUS servers.  If ise1 was dead and that the user has been authenticated through ise2, when ise1 is alive still it won't take no possession of authenticated sessions, but the next time that a device/user is authenticated, it will use ise1 as long as it's the first RADIUS server in the list.

Tags: Cisco Security

Similar Questions

  • My T540p turns off an AC to work on drums and never returns back

    Since the last device of management power Lenovo update (somewhere 6-13 Oct 2015), my T540p jumps out of his power and never returns back, until I have turn it off and disconnect the battery.

    When I start Windows 10 after the battery is disconnected, it loads for a few minutes and then to the battery. Whatever I do after that - Plug and unplug the power adapter, change to another adapter (I have a spare), extinction, reboot, poweroff connect AC - nothing works. When I disconnect the battery and plug back - normal behavior is restored.

    I have dual boot on my T540p with linux (Gentoo, kernel 4.2.3). Linux works OK. The problem appears only when I boot Windows 10.

    It turned out that Windows has jumped to a special power - autonomous mode. Once I turn it back into balance, the battery took over. I couldn't understand what Windows switch to the mode of independent power supply.

    It's very sad that CE supports standalone through reboots and poweroffs. It is not logical to disable the battery charge when the machine is turned off completely.

  • My computer keeps trying to install 14 updates, but when it gets to the point where the computer restarts returned back without installing them. Error 80070020

    windows update

    My computer keeps trying to install 14 updates, but when it gets to the point where the computer restarts returned back without installing them. Get an Error 80070020, I am unable to find out exactly what to do. Every day for a few weeks he tries to install the updates and then stops to install but always ends up coming back. Can you help me please?

    Hello

    read thisL

    Windows Update Error 80070020

    http://Windows.Microsoft.com/en-us/Windows-Vista/Windows-Update-Error-80070020

    and also see if this helps to fix:

    How to reset the Windows Update components?

    There is also an automatic 'fix - it' here

    http://support.Microsoft.com/kb/971058

    Also, try to put the KB numbers in the search on the link below and then manually download the

    http://www.Microsoft.com/downloads/en/default.aspx

    or please repost your question in the correct windows update forum

    http://answers.Microsoft.com/en-us/Windows/Forum/windows_vista-windows_update?page=1&tab=all

  • I chose to open files by default .exe for internet explore. Now I can't open microsoft word2007, Notepad, mozilla, chrome, etc etc as iexplorer opens when I click on any program. How to return back?

    I chose to open files by default .exe for internet explore. Now, I can't open chrome, mozilla, Notepad, microsoft, etc., etc. like iexplorer opens when I click on any program. How to return back?

    I tried this solution

    "When you run an .exe on a Windows XP, Windows Vista or Windows 7 computer file, the file can start another program."

    microsoft community.
    The problem I encounter is that I can't even open Notepad or command prompt window window download internet explore opens and I'm stuck there. Please help me get out of this quagmire.

    Hi Wiillam,

    This problem occurs because the icon cache is not updated correctly.

    Refer to:

    Note: Serious problems can occur if you modify the registry incorrectly. Therefore, make sure that you proceed with caution. For added protection, back up the registry before you edit it. Then you can restore the registry if a problem occurs. For more information about how to back up and restore the registry, click on the number below to view the article in the Microsoft Knowledge Base:
    (http://windows.microsoft.com/en-US/windows7/Back-up-the-registry ) How to back up and restore the registry in Windows.

    Icons change incorrectly in Windows

  • So how can file formatting when installing printer, I return back to their original state.

    Original title: FILE FORMAT CHANGED AUTOMATICALLY AFTER the INSTALLATION of NEW SOFTWARE PRINTER HOW can I RETURN FORMAT ORIGINAL to RECORDS

    I just installed a brother p touch on my computer printer software and now all my folders automatically changed their format to account for the printer. who is a printer for adhesive labels. How can I get all my files back to their original format? I can do each an indivicually, but then, after closing the computer and re opening they come back to the new format of the thumbnail

    Thank you

    but finally managed to solve the problem

    tried to click on all the printers iconc

    except the one on the bar at the bottom of the screen

    from there I could change the default settng for printe

    new sticker fron brother printer

    to the old normal printer

    strange I couldn't do otherwise

  • service pack 2 installs but returns back tried nseven times

    I installed the service pack 7 times and he said: he has successfully installed you attempt a restart and he says he has not installed and comes back in return what I am doing, I am told by telus ineed service pack 2

    Hello

    This article explains how to troubleshoot problems when you install a service pack for Windows Vista or Windows Server 2008.

    http://support.Microsoft.com/kb/947366

    Use this forum link for all questions related to Windows Vista SP1, Windows Vista SP2 and Windows Server 2008 SP2 below.

    http://social.technet.Microsoft.com/forums/en/itprovistasp/threads

    or repost in the Windows Update forum link below

    http://answers.Microsoft.com/en-us/Windows/Forum/windows_vista-windows_update?page=1&tab=all

  • About being able to return back to win 7 or 8.

    Hello I was wondering if it will be possible to return to windows 7 or 8 once you have upgraded if you are not satisfied to win 10? Also if we improve to win 10 is still we can wins double boot 7 and 10 using your previous 7 cd key? Or win 10 will disable you to reuse your key of win 7?

    Thank you

    Mark

    You can roll back within the first 30 days, after that you would have to re - install the previous operating system > it is an upgrade to the existing operating system and must be installed on the same partition.  After the upgrade, you can install the daul boot previous operating system, but you can't dual boot before (unless you're already)

  • Right way to restart the ISE PSN node in a distributed deployment

    Hi all

    Two of my ISE nodes (in a 1.2 8 node deployment) have expired admin CLI past (I know I'm stupid!)

    One is the secondary node MnT and one is a PSN node (1 of 4).

    I have some information on what I need to do to get a new password, but I have to unregister the nodes first or can I restart them.

    Will be my other three nodes PSN automatically re - authenticate users on PSN restart node or should I ask the downtime?

    Thanks for any help in advance

    Mark

    Right, shouldn't be a problem.  You certainly wouldn't want to remove it - you'd only if you need to reimage or something like that.

    Just as a tip, if you speak only use wireless cases, you could always disable this particular NHP since authentication Radius and Radius Accounting servers in the world (not over the WLAN).  If you make a change to the WLAN, it will "bounce" the WLAN.  But, if globally disable you "admin" that particular NHP, it will keep just the WLC as NHPS by up to that turn you it on again.

    Tim

  • ISE PSN node will not be joining the cluster

    Hi all

    Has anyone seen a problem where an NHP cannot join the cluster?

    We join node of PSN

    -Node is saved successfully (current synchronization)

    -1 hour later - node replication failure.

    -Replication synchronization failed because the secondary database is down

    I have a client where admin node and PSN are separated by the firewall.

    We let in two directions

    Admin <-->PSN

    ICMP

    HTTPS

    1521

    Firewall not showing drops.

    DNS and NTP are ok.

    Current topology is 1 NHP, 1 Admin node.

    Works very well in our test lab, but not clients environmnet.

    See you soon

    Peter.

    Thank you for the update we and good work on the search for the solution! You should probably mark it as resolved now

    In addition, it is quite rare (at least for me) for nodes of ISE to be separated by firewalls. There are a lot of ports/protocols that must be opened between them is usually more of a pain to manage. In addition, sometimes ports will change too. For example, the fueling port agent has been changed not too long ago...

    Thanks for the note!

  • Conduct active/active uplink VDS with return back option 'no '.

    All,

    I meet the situation that is specified in this blog: http://tinyurl.com/hvheosx

    I tested rising active/active configuration (2) and the option of automatic catering on 'no', but it always results in failing, back to the original uplink.  I am able to configure the uplink to active/passive strategy and configuration works as stated, but the setting seems less ideal because new connections would not be balanced between uplinks.  Has there been an update service VDS 5.0 corrects this behavior?

    Thank you!

    NIC teaming policy set to Yes failback or wouldn't that give you make when you set NIC Teaming Active and standby.

    In the drop-down auto-restore, specify if a physical card is returned to the active state after recovering from a failure.

    If failback is set to Yes, the default selection, the adapter is returned to active duty at the start, moving the auxiliary map which took place, as appropriate.

    If failback is set on not for a port standard, a failed adapter remains inactive after recovering to another active adapter fails and must be replaced.

    Ref: vSphere 6.0 Documentation Center

    If you use active then it's methods of load balancing that you use as "From Virtual port ID", "Source Mac Hash", etc... take care to spread the load between the active adapters available. It has nothing to with what you have setup in the part of the restoration of this policy.

    Thus, even the version 6 of the VDS is also to have same behavior, no change in this part.

  • cannot return back or forward more than one page at a time, what happened to the little arrow that would allow you to go back several pages at a time.

    Some Web sites disable the back button. older versions of firefox, I could hit the little arrow to the right of the forward button and it would display several pages back, so I could choose which one to go backward or forward to. now I'm going back as much as a person with a disability page and cannot go further. It's really annoying to lose a feature that I used all the time

    There are three options to access the history: (1) click and hold the back button. Right (2) click on the back button (3) If you really want installation back, dropmarker one add-on: https://addons.mozilla.org/en-US/firefox/addon/backforward-dropmarker/.

    Hope that helps :)

  • How can I stop my email to be before? I was hacked and you got account return back, I can't receive e-mail.

    A part is sposing as the company Microsoft is breaking into the computers of the peoples.  Mine has been hacked.  I can finally return to my account, but I can no longer receive emails from anythings.   I went through the question: my computer has been hackjed and can not change my password...  I'm not a wise computer, but I really need help.

    You're saying that your physical PC has been compromised or that your account has been compromised?  They are not the same thing.  If the first case, then the best thing to do if you connect is to backup your data to an external device or the cloud (SkyDrive, Dropbox, etc.) and to reinstall Windows, have it reformat your hard drive in the process.

    If, instead, your email account has been compromised, you may be able to get help from your postal service provider support staff to force change or to close the old Inbox mailbox and create a new one.

  • problem of return back to the Logitech keyboard

    Logitech 350, Logitech Wireless Wave Combo MK50 YRBN90... It seems that the BACKSPACE key removes only a key and no more unless I underline the word in full. I changed the batteries, they are now working very well no doubt were before because nothing has changed.  How can I solve this problem? I am not able to keep typing the keys for the repetition of a letter as in the word "letter". I have to move the cursor to continue.  Help email * address email is removed from the privacy *.

    Hi Jorgensen,

    1. did you try to connect to another keyboard and check if the problem persists?

    2. have you updated the latest drivers for Logitech keyboard?

    3. what operating system is installed on the computer?

    Follow these methods and check if that helps:

    Method 1:

    I suggest to use the on-screen keyboard and check if the BACKSPACE key works.

    http://Windows.Microsoft.com/en-in/Windows7/type-without-using-the-keyboard-on-screen-keyboard

    Method 2: follow the steps in this link and check if that helps:

    http://Logitech-en-AMR.custhelp.com/app/answers/detail/A_ID/38032/section/Troubleshoot/CRID/404/lt_product_id/5994/tabs/1, 3,2,4, 5/cl/we, fr

    http://www.Logitech.com/en-us/support/wireless-keyboard-K350?OSID=14&bit=32

    Hope this helps, if the problem persists please get back to us, we will be happy to help you.

  • Default file extension return back after modification

    I'm changing the default program used to file for Server 2008R2 extensions for safety.  Once the changes are in place they returned to OEM extensions.  Does anyone know of the registry key change that is necessary?  I did a lot of research around with no luck.  Thank you for your time.

    Hello

    Your question is more complex than what is generally answered in the Microsoft Answers forums. It is better suited for the IT Pro TechNet public. Please post your question in the Windows Server Forum. You can follow the link to your question:

    http://social.technet.Microsoft.com/forums/en-us/category/WindowsServer

  • How can I return back to Outlook Express with AOL?

    I can't find a way back to AOL Mail after windows mail - Outlook Express makes it so easy to pass to them and import all my mail, but give no information on how to go back and come back all my mail to AOL.

    http://social.answers.Microsoft.com/forums/en-us/vistanetworking/threads

    "Connect to a network, electronic mailand the Internet."

    They will help you with your question in the Vista Networking Forum above.

    See you soon.

    Mick Murphy - Microsoft partner

Maybe you are looking for

  • Cannot leave a suspect site demanding that I have download an update "java".

    A website that itself charged when I visited a not - quite healthy (but not morally bankrupt) site now not allow me to close the browser. He insists that I have download an "update to my java" because of anxiety "of security-critical. It's completely

  • Satellite A30 generic fault

    Hello I have four Toshiba Satellite A30 in the workshop at the moment and all have the same defect. The machines are:1 - satellite Pro A302 - satellite A303 - satellite A30 9214 - satellite A30-931 All four machines behave as follows: Once the power

  • URL of the page Firefox displays do not flow in the address book.

    Firefox is now showing the URL data for the tab more recently opened in each address bar, and not the actual data for the open page on this tab. For example, tab 1 is open to wsj.com and two tab is the open for foxnews.com, suddenly the address bar t

  • Satellite Pro L850 - very loud buzzing/drilling noise before crashing

    Someone at - he had this? Machine only a few months. Use of any office. Happened about 3 times now. All of a sudden made a very loud noise - more like a forest road than anything else - then crashes.

  • Need drivers WLAN (Win XP) for Satellite L40 - 14Y

    Hello @ all I need a WLAN driver for Win XP. I tried the drivers Realtek 8187B origin on their homepage, but they won't install it. The download area said Toshiba is an Atheros WLAN device but these drivers are too bad. It is certainly a device Realt