Showing posts with label ISE. Show all posts
Showing posts with label ISE. Show all posts

Friday, 10 April 2020

Cisco WLC Administrator Radius authentication

In order to authenticate a user via a RADIUS server, for controller       login and management, you must add the user to the RADIUS database with the       IETF RADIUS attributes Service-Type attribute set to the appropriate value       according to the user's privileges.
  • In order to set read-write privileges for the user, set the           Service-Type Attribute to Administrative.
  • In order to set read-only privileges for the user, set the           Service-Type Attribute to           NAS-Prompt.
  • For Lobby Ambassador you have to return IETF RADIUS Service-Type attribute set to Callback       Administrative.
Please find config example:
http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a0080782507.shtml.

Friday, 2 November 2018

Cisco ISE check Profiler Feed logs and Updates

Hi all,

In order to check your profiler logs and check the upgrade progress use the following command in CLI

sh logging application profiler.log tail

Tuesday, 5 June 2018

Anyconnect NAM XML profile location

Windows 7:
C:\ProgramData\Cisco\Cisco AnyConnect Secure Mobility Client\Network Access Manager
Windows XP:
C:\Documents and Settings\All Users\Application Data\Cisco\Cisco AnyConnect Secure Mobility Client\Network Access Manager

Tuesday, 27 March 2018

Cisco ISE CoA Posture 5417 & 11103 errors

I was getting the following errors with client Posture and CoA.

In the switch I was missing the server-key from radius author

aaa server radius dynamic-author
client 1.1.1.1 server-key secretkey
auth-type all