Cisco ISE – Upgrading
Nov17

Cisco ISE – Upgrading

KB ID 0001071  Problem Just as I was hunting around for an NFR version of Cisco ISE 1.3, they released 1.4. I wasn’t sure if I could upgrade my NFR version without breaking it so I thought I would ‘have a go’. Solution If you read the documentation for the upgrade of 1.2 to 1.4, I suggest you skip straight to the tasks to do AFTER upgrade, as it has a habit of resetting things back to default, best to make sure you...

Read More
Cisco ISE – Basic 802.1x With Windows  Part One (Active Directory Integration)
Nov17

Cisco ISE – Basic 802.1x With Windows Part One (Active Directory Integration)

KB ID 0001074 Problem To carry out this procedure you should have your ISE appliance deployed, with all the basic settings on it. Over the next few articles I’m going to connect the ISE appliance to Active Directory, then configure the ISE Appliance for 802.1x. Configure RADIUS on both the appliance, and on my Cisco Switches. Then finally configure Windows Group Policy to enable the clients to authenticate to 802.1x. Solution 1....

Read More
Cisco ISE – Basic 802.1x With Windows  Part Two – Configuring 802.1x Policies
Nov17

Cisco ISE – Basic 802.1x With Windows Part Two – Configuring 802.1x Policies

KB ID 0001075 D Problem Back in Part One, we joined Cisco ISE to Active Directory, now we we will take the built in ISE policies and change them. This will allow our clients to authenticate, with the correct protocols. Solution 1. By default ISE will use pretty much any available protocol, we are going to use PEAP, although I’m also going to allow EAP-TLS (it’s more secure and if I start rolling out certificates I’ve...

Read More
Cisco CSC Module – Stop it scanning its own update traffic
Nov17

Cisco CSC Module – Stop it scanning its own update traffic

KB ID 0000156  Problem The CSC module when it’s installed in your firewall and running, by default scans all traffic in and out including all its own updates and web traffic, this can cause quite a performance hit, to stop this happening exempt the CSC modules traffic from being scanned. NOTE: your access-lists and port groups may well have different names, so I’ll list all the commands to chase them though the...

Read More
Cisco CSC Module Error – Activation Warning
Nov17

Cisco CSC Module Error – Activation Warning

KB ID 0000392  Problem You try to connect to your Cisco CSC module, and see the following error. Error: Activation Warning CSC is not activated. Please run setup wizard under Configuration > Trend Micro Content Security > CSC Setup > Wizard Setup to perform setup process. Click OK button to to to Trend Micro Content Security Setup wizard. Naturally if you’ve never setup the CSC you are going to see this, but what if it...

Read More