06-15-2018 07:45 AM
Is there anyone on forum using Cisco TS Agent to send user ID, IP and Ports mapping to ISE/ISE-PIC, then FMC can learn it via Pxgrid?
I tried but doesnt work at all. TS Agent configured with port 9094, but never be able to connect ISE.
Did I configure something wrong or TS agent has bug??
Solved! Go to Solution.
06-16-2018 09:35 AM
As you mentioned it unable to connect ISE, please check ISE able to resolve the agent's hostname and reverse lookup the agent's IP address, and verify that ISE listening on that TCP port 9094 (e.g. CLI "show ports). If it is, take a packet capture in between. Also, enable DEBUG on passiveid and check passiveid-mgmt.log and passiveid-api.log.
For TS agent specific troubleshooting, please contact our Firepower support team.
06-16-2018 09:35 AM
As you mentioned it unable to connect ISE, please check ISE able to resolve the agent's hostname and reverse lookup the agent's IP address, and verify that ISE listening on that TCP port 9094 (e.g. CLI "show ports). If it is, take a packet capture in between. Also, enable DEBUG on passiveid and check passiveid-mgmt.log and passiveid-api.log.
For TS agent specific troubleshooting, please contact our Firepower support team.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide