Cisco Security

WLC with RADIUS authentication servers

I WLC user authentication with Cisco ISE which is linked with LDAP, now ISE is not accessible. Will be wireless users could always connect and use the Services of WLC?

ISE2.0 supports WPA2-PSK?

Dear Sir. MS AD Server ISE2.0 CT5508 CAP3702i I have an ad group: StaffComputer and a SSID: comments Can I configure WPA2-PSK in the ISE2.0 for SSID: comments and exclude the StaffComputer? In other words, the staff computers cannot access network by

Alarm Notification Cisco ACS 5.8.1

Hello Does anyone know which means that notification of alarm below? Alarm - Notif .jpg Active Directory is always adhered, but one of the forest of the pub was unavailable yesterday. I tried to show the logging, but no newspaper shows the issue. App

ISE Corp. Internet access static user authentication

Hello gentlemen, I have a small question on the type of authentication that I can use for the CORP users who want to access Internet & some in-house applications on their Android devices and they should not be re - authenticate when they move between

MAB DEVICES CONSUME MORE LICENSES

Dear team, We have the ISE servers with basic license. We use the ISE services only to the Dot1x for users authentication and authentication for Cisco IP Phone MAB and printers on the network. We are assigning VLAN dynamic for all devices. AFAIK, MAB

Laboratory of ISE question help ~!

I'm new and trying to set up a lab to ISE. I had download the 1.2 ISE and installed in VMware, but after I finished installing. It is not installation type to initialize the ISE. and I try to connect the connection with its ip address page. but it do

Identity of the ACS creation of store

Hi Experts, I have a 5.8 ACS in network. I intend to create a sequence of store of identity for the authentication of devices. If I have 10 internal users in ACS, is it possible that I can select 5 users in the list of internal users and are part of

Use an external radius server in a different ISE ISE

Hello This is the scenario: three companies are part of a business, we want to authenticate users through 802.1 x, there are 3 Active Directory and Cisco 3 ISE. Is not possible to join in a forest or 'connect' Active Directory. This: [email protected

Profile of Mac vs iPhone etc?

Greetings, I'm trying to ISE2.0.1, but I'm having a problem in which all the features of profile as Apple devices. I put all the sub categories of Apple devices as their own category and disabled Apple devices. What causes their lights as unknown dev

Where the verification of members AD comes to auth dot1x?

I have an AuthC rule which says that if Wired_802.1x, use 'Corp_dot1x_user_sequence '. The sequence Source of Corp_dot1x_user_sequence identity says select Cert "Corp_Cert_Profile" profile and use the search of "CorpAD" Auth list. The "Corp_Cert_Prof

DNS TTL in ASDM

Hi guys,. In Cisco ASA 5505 ASDM, is there a way to see the remaining LIFE expectancy for DNS entries. With the CLI, you can use the dns #show command and shows the remaining LIFE. How I see with ASDM? (Background: I use FQDN based ACL and therefore

ISE general questions: DOT1x, NAM, NAC etc...

Hello I have two questions. One is a question that I am face and second is a probability I want to check question: I have a stack of 3 switches: 2 x WS - C3850 - 48Pand 1 x WS-C3850 - 24 p, running IOS - XE 03.03.01SE. Now on some ports when I try to

CSCuw57593 on ISE 1.4 & WLC 7.5.102.0

Hello We are hitting bug CSCuw57593: Symptom:When you try to go through stream BYOD minis embedded browsers, the customer get an error "unsupported browser". Conditions:ISE 1.4, iOS 8 and later versions Workaround solution:manually launch another bro

Only specific groups should get authenticated on ISE instead of the entire announcement

Hello friends, I have integrated ISE to RFA, but all users of the AD are get authenticated against my network devices and get landed in exec mode, if these users have privileges to perform the configuration, network admins are able to do it because I

ISE traffic prioritization

In ISE can us priortize VoIP or any other type of traffic such as QoS?

Scalable CSACSE-1113-K9?

Hi all I CSACSE-1113-K9 network and now I intend to upgrade this legacy. Currently is running on 4.2, scalable? If yes what version I can improve the legacy? Concerning Sachin K

MAC address bypass and recovery

switch: c2960-48TC-EX5 IOS Version 15.0 L (2)Ray ACS3.3 Group AAA dot1x default authentication RADIUSstart-stop radius group AAA accounting dot1x default RADIUS-server host 10.0.0.13 auth-port 1812 acct-port 1813 borders 7 xxxxxxxxx interface FastEth

ISE 1.4 Posture scans on non - 802. 1 x wired ports

Hello I have an ISE1.4 facility including the pose running patch 6 for the end points. We have configured Anyconnect to run the Posture on wireless clients. Switches are not configured for the authentication of 802. 1 x, so we do not want to run the

Cisco ISE Patch 1.3 6 procedure

Hi team, Please help me with the installation of fix on Cisco ISE version 1.3.0.876. I intend to patch our ISE with HA Set - up for patch 6. There also a way to upgrade? I read that you must install the hotfix on the primary node, then the secondary

Cisco ASA - ASDM will not launch (Please wait while the certificate information to be retrieved)

I have a problem with a Cisco ASA 5505. ASA 9.0 (3) / ASDM 7.4 (1). I did a factory reset, format flash, all copied from tftp. Config copied from another SAA. Subsequently changed the host name entries. connect host name Crypto ca trustpoint ASDM_Tru