Cisco Cisco Identity Services Engine 1.3 릴리즈 노트

다운로드
페이지 80
 
21
Release Notes for Cisco Identity Services Engine, Release 1.3
 
  New Features in Cisco ISE, Release 1.3
Monitoring Database Object Check: In earlier releases, Cisco ISE upgrade has failed because of 
missing Monitoring database objects. In this release, the upgrade software checks for the Monitoring 
database objects to ensure that they are present before the upgrade begins. In the rare cases where 
the database objects are still missing, the administrator must restore from a backup taken before the 
upgrade.
Enhanced Show Tech Support Command Output: The show tech-support command is enhanced and 
now includes the database health report, alert log errors, processes that consume resources, database 
memory usage, and so on. This output is readable and is also available in the Support Bundle. You 
can run the show tech-support command on demand to look for the health of the database. The 
output can help the administrator with troubleshooting, if needed.
Database Enhancements: This release includes several database enhancements that improve Cisco 
ISE performance. Index entries and corrupt data blocks are identified before the upgrade begins. 
This release also includes several database enhancements that improve Cisco ISE performance. A 
database sanity check is done before upgrade to ensure that missing database objects do not result 
in an upgrade failure.
Other Enhancements
This release includes several enhancements to help deploy and troubleshoot ISE easily. These include:
Live Log/Live Session Filters: Ability to filter the data in the Live Logs/Live Sessions page based 
on any of the attributes.
Endpoint Debug Logs: Download debug logs for a particular endpoint from a single node or all the 
nodes in your deployment in a single file. This log file includes logs for all services that were 
enabled.
Export Policy Configuration in XML: Ability to download authentication and authorization policy 
configuration and policy conditions in the form of an XML file to troubleshoot configuration-related 
issues offline. You can export the policy configuration and send it to TAC for troubleshooting.
Bypass Suppression for Endpoint: Cisco ISE allows you to set filters to suppress some syslog 
messages from being sent to the Monitoring node and other external servers using the Collection 
Filters. At times, you need access to these suppressed log messages. Cisco ISE now provides you an 
option to bypass the event suppression based on a particular attribute such as username for a 
configurable amount of time.
Filtered Support Bundle: You can choose to download a support bundle that includes logs for a 
particular period of time. You can choose the from and to dates to filter logs in the support bundle. 
This would help narrow down your search while troubleshooting issues.
Centralized Certificate Management: This release simplifies certificate management and helps you 
to manage certificates for all the nodes in your deployment from the Admin portal. You can choose 
to generate CSRs for multiple nodes in a single request, export the CSRs, and bind the CA-signed 
certificate with the CSRs from the Admin portal.
In Cisco ISE 1.3, Endpoint Protection Service (EPS) is also known as Adaptive Network Control 
(ANC).
ISE 1.3 REST API Get All Operation for Endpoints: The “List” operation to retrieve all endpoints 
in the ISE 1.2 and 1.2.1 REST API is now “Get All.” The output now includes the resource’s name 
in addition to its ID.