Cisco Cisco Identity Services Engine 1.3
Identity Rewrite, on page 18
Identity Resolution Settings, on page 19
Configure Active Directory User Groups, on page 9
Supported Group Types, on page 9
Diagnose Active Directory Problems, on page 24
Active Directory Alarms and Reports, on page 25
View Active Directory Joins for a Node, on page 26
Active Directory Advanced Tuning, on page 27
Prerequisites for Integrating Active Directory and Cisco ISE
The following are the prerequisites to integrate Active Directory with Cisco ISE.
• Use the Network Time Protocol (NTP) server settings to synchronize the time between the Cisco ISE server and Active Directory.
You can configure NTP settings from Cisco ISE CLI.
• If your Active Directory structure has multidomain forest or is divided into multiple forests, ensure that trust relationships exist
between the domain to which Cisco ISE is connected and the other domains that have user and machine information to which
you need access. For more information on establishing trust relationships, refer to Microsoft Active Directory documentation.
you need access. For more information on establishing trust relationships, refer to Microsoft Active Directory documentation.
• You must have at least one global catalog server operational and accessible by Cisco ISE, in the domain to which you are joining
Cisco ISE.
4