Friday 6 November 2015

Cisco Identity Services Engine 2.0

Cisco ISE 2.0  



Hii Guys this post is about the release of New version of Cisco ISE.

Cisco ISE 2.0 is out in the market and I must say its a major release, and guess what Cisco ISE-2.0 supports TACACS+ / T+. Yes T+ was one the highly requested feature.

1. New Simplified User Interface for ISE 2.0

I just tried the ISE-2.0 and must say the UI is very cool and much simplified.

Very first have a look at the Home Page of ISE-2.0




Take a look at the new User Interface. The UI technology is modernize for better browser and technology support. The Navigation support is also changed though more or less the pages are still kept the same.

Given Below are the new controls -
Guest Access and Work Centers are the New Tabs added to the GUI of ISE 2.0

Take a Look at these Tabs -

Operations Tab


Policy Tab



Guest Access Tab is something New in Cisco ISE 2.0. All Sponsor and Guest portal related settings are available at same place.



Administration Tab is Also more or less same like ISE 1.X versions. Except the Device Portal Management control.


Finally Work Centers is a completely new tab added to Cisco ISE 2.0




2. TACACS+ / T+ Support on ISE 2.0 for Device Administration





3. Tunnel support in ISE 2.0

Supports Tunnel for Cisco TAC. This feature is already on WSA/ESA and now is introduced in ISE 2.0 as well. This feature allows the admin to enable a secure tunnel for Cisco`s TAC to remotely access the appliance`s root OS.



4. Pre-defined Access Rules

Well Cisco ISE 2.0 comes with pre-configured default rule.This helps the engineer to save deployment time.


5.  Pre-defined 3rd party Network Device profiles


6. SXP capability in ISE 2.0

Propagate SGTs from ISE directly to enforcement devices. Also the Access layer devices does not need understanding of SGT in User-Data Center use-case.


7.  Cisco MSE integration with ISE 2.0

The integration of Cisco Mobility Services Engine(MSE) allows administrators to use ISE to authorize network access based on the users location.  Cisco MSE periodically checks for location changes and reauthorizes access based on the new location of user. This is done as a part of authorization policy using CoA.

2 comments:

  1. Thanx for updates!!

    Would love to know more on this if possible(share some link,doc,etc.)

    ReplyDelete
  2. Sure, I am exploring the device, will post more on this device soon..

    ReplyDelete