Configure Cisco ISE
Configure Guardian firewall integration with the Cisco ISE firewall.
Before you begin
About this task
- The Cisco ISE internal certificate authority (CA)
- An external CA (third-party certificates)
Procedure
-
In the top navigation bar, select The administration page opens.
-
In the Settings section, select Firewall
integration.
The Firewall integration page opens.
-
In the top right section, select +
A dialog shows.
-
From the Choose firewall dropdown, select
Cisco ISE.
A dialog shows.
-
If it is not populated already, in the Host field, enter
the host internet protocol (IP) address.
-
In the Client name field, enter the name of the
client.
Note:The client name is taken from the Cisco ISE pxGrid Services screen on the Cisco ISE Web user interface (UI). For more details, see the appropriate Cisco ISE documentation.
- Optional:
Authenticate with a Cisco ISE internal CA
certificate. select Authenticate with certificate., then
enter the password in the Password field.
- Select Authenticate with certificate.
- In the Password field, enter your password.
- Optional:
Use a third-party certificate. check the Use third party certificate box, then
import the certificate(s), using one of the following methods
- Select Use third party certificate.
- Choose a method to import the certificate:
- Import the CA certificate
- Import the certificate
- Import the key
- If you chose, Import the CA certificate or Import the certificate, continue from step 10 . If you chose Import the key, continue from step 11.
-
Import the certificate.
-
Import the key.
- Select Import the key.
- Select the file and import it.
- Optional: If necessary, in the Options section, select Enable nodes blocking.
- Select Save.