Tuesday, April 27, 2021

dACL isn't being downloaded to Cisco 3750X

I am working on an ISE project to implement posturing and compliance for our client machines. We created a test NAD (a used 3750x with ios 15.0(2)SE12 because we're still using old style commands on our production 3850s running version 3 of IOS-XE). One of the issues we're running into is that the test client authenticates to ISE from the test NAD but the dACL isn't downloaded to the switch. We're currently running ISE 2.6 patch 6 atm and I can see that the test NAD is able to talk to ISE using the configured PSKs on the switch and ISE NAD settings.

Would anyone have an idea of what is causing this to happen?



No comments:

Post a Comment