No video

ISE pxGrid Direct with CMDBs

  Рет қаралды 3,094

Cisco ISE - Identity Services Engine

Cisco ISE - Identity Services Engine

Күн бұрын

ISE TME Thomas Howard shows how to use Configuration Management Databases with ISE for authorization rules and profiles.
Topics:
00:00 Intro & Agenda
00:48 ISE User Endpoint Custom Attributes Webinar: • ISE Custom User & Endp...
01:08 Why Custom Attributes?
02:38 ISE Endpoint Custom Attributes
03:14 Configuration Management Databases (CMDBs) and Configuration Items (CIs)
06:16 Cisco IT Device Registration Example
08:25 Poll: What CMDBs do you have that you want to integrate with ISE?
09:31 Service Now CMDB JSON Data Example
11:16 ISE 3.2 pxGrid Direct Feature Overview and Controlled Introduction
14:24 Demo: ISE pxGrid Direct in ISE 3.3
15:20 Demo: Create a pxGrid Direct Connector for a CMDB
18:55 Demo: CMDB as an ISE Data Dictionary
20:18 Demo: Context Visibility - pxGrid Direct Endpoints for CMDB CIs
21:28 Demo: ISE Authorization Profiles using CMDB Attributes for iPSK values
22:22 Demo: ISE Authorization Rules using CMDB Attributes
23:52 Demo: IOT MAB authentication of IOT endpoint in iPSK CMDB using EAPTest
26:46 Demo: ISE Configuration Change Audit Report for CMDBs
27:23 Demo: Live updates of Context Visibility - pxGrid Direct Endpoints for CMDB_100K
28:33 pxGrid Direct Scale
30:57 Internal vs External Databases Comparison for Custom Attributes
32:20 pxGrid Direct Connector REST API: cs.co/ise-api
32:48 Demo: ISE 3.2 Patch 2 importing 1 million Configuration Items
ISE 3.2 Patch 2 is available @ cs.co/ise-software
36:36 Question: What if a MAC address already added to the Unknown Endpoint Group? It depends on your policy sets and rule order.
37:48 Question: Will we get any alert or alarm if the CMDB did not import correctly? No alarm but it is recorded in the Audit Log.
39:36 Question: How is the attribute conflict handled with multiple CMDBs? Each CMDB is a separate, independent dictionary.
43:03 Question: If we purge the endpoints, should we exclude those from the CMDB? No, there is no exclusion for CMDB
45:06 Question: Are there any conditions that can be used to only pull certain endpoints into the local CMDB? No, you pull the entire table.
47:34 Question: Do we expect many devices could be deleted in ISE or is it tracking only devices learned from the connector? ISE tracks all devices requesting network access. The CMDB is a reference for correlating known endpoint data.
49:53 Question: Can we search by CMDB fields in LiveLogs? No, not today in LiveLogs or Search.

Пікірлер
MAC Authentication Bypass MAB with ISE
1:00:39
Cisco ISE - Identity Services Engine
Рет қаралды 10 М.
ISE Endpoint Profiling with Network Packet Analyzers
56:29
Cisco ISE - Identity Services Engine
Рет қаралды 2,6 М.
لااا! هذه البرتقالة مزعجة جدًا #قصير
00:15
One More Arabic
Рет қаралды 33 МЛН
What it feels like cleaning up after a toddler.
00:40
Daniel LaBelle
Рет қаралды 93 МЛН
What's New in ISE 3.4?
39:28
Cisco ISE - Identity Services Engine
Рет қаралды 3,4 М.
014 Pxgrid Certificate
3:45
sysable IT solutions
Рет қаралды 106
ISE Digital Certificate Administration
1:07:14
Cisco ISE - Identity Services Engine
Рет қаралды 17 М.
5 Top Skills to Learn in College
1:00
Apna College
Рет қаралды 12 МЛН
Getting Started with ISE Profiling
59:12
Cisco ISE - Identity Services Engine
Рет қаралды 9 М.
Introduction to the Cisco Platform Exchange Grid pxGrid in ISE
55:32
Cisco ISE - Identity Services Engine
Рет қаралды 6 М.
How to Get Data Out of ISE
58:06
Cisco ISE - Identity Services Engine
Рет қаралды 2 М.
Device Administration with ISE
1:00:56
Cisco ISE - Identity Services Engine
Рет қаралды 5 М.
Cisco SD-Access with ISE
54:28
Cisco ISE - Identity Services Engine
Рет қаралды 7 М.