Architecture & Deployment Flashcards
2 Types of Identities used by ISE
Username & MAC address
2 Types of Identity Stores used by ISE
Internal & External
ISE internal Identity Stores are used to authenticate which type of identities
Users & Endpoints
Which Identity Store attributes can be used in ISE authorization policy
User & Machine
What is an individual Identity Store called
Identity Source
How is Identity Source Sequence processed
Top Down
WHich Idnetity Stores are suported by ISE for authentication
LDAP
Microsoft AD
RADIUS server
MAB uses which type of Identity Store
Internal Identity store
2 Types of Internal Identity Store used by ISE
User database
Endpoint Database
Primary reason for using external Identity Store
Performance
Scalability
What is an Identity Store
Database which can be used to authenticate User or Endpoint credentials
Minimum certificate checks
Has Certificate been signed by a Trusted CA
Is certificate expired
Has certificate been revoked
Has client provided proof of possesion
ISE Node Types
Policy Admin Node
Policy Services Node
Monitoring & Troubleshooting Node
pxGrid
Policy Admin Node (PAN)
Node used to manage configuration changes to all nodes in the deployment.
These changes are then synced between Primary PAN and Backup PAN (and config updated to each PSN where applicable)
Policy Services Node (PSN)
Node used to provide Network access, Posture, Client Provisioning, Profiling Apply Authentication and Authorization Policies to endpoints