07-18-2017 09:11 AM
All,
I have a question from a customer. Currently, they are using ACS with a separate AD environment. They wanted to know if ISE can be deployed as follows: TACACS module leveraging AD1 and ISE (Endpoint Access Control and Segmentation) leveraging a separate AD environment (AD2). Is this possible?
Thank you in advance!!
Scott Jackson
Solved! Go to Solution.
07-18-2017 11:21 AM
Hi Scott, I believe AD1 and AD2 are two distinct Active Directory domains? If yes, we can support what you are asking for. The TACACS+ authorization can happen on domain-1 and the endpoint authorizations can happen on domain-2. ISE can connect up to 50 distinct AD domains.
Cheers!
-Hari
07-18-2017 11:21 AM
Hi Scott, I believe AD1 and AD2 are two distinct Active Directory domains? If yes, we can support what you are asking for. The TACACS+ authorization can happen on domain-1 and the endpoint authorizations can happen on domain-2. ISE can connect up to 50 distinct AD domains.
Cheers!
-Hari
07-19-2017 07:46 AM
Thank you!!!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide