Deploying Cisco ISE for Network Access Control
Overview
A single Cisco ISE appliance paired with real switches, ready for 802.1X, MAB and guest-access work. This pod puts ISE policy nodes and network access devices together so authentication decisions produce real, testable outcomes, not a reference architecture diagram.
Images included
- A Cisco ISE appliance image (all-in-one policy service node)
- Cisco IOS-XE switches (IOSv/IOL images) configured as 802.1X authenticators
- Linux endpoint images for MAB and guest-access flow testing
Environment & resources
A single ISE node integrated with a small switch fabric, so 802.1X, MAB and guest onboarding flows can be built and tested end to end against real authenticators.
Data-center and identity-scale gear: fabric switches and appliances that need real headroom.
FAQ
Is this a full multi-node ISE deployment?
No, this pod runs a single all-in-one ISE appliance. For a distributed PAN/PSN/MnT deployment, see ISE-HA.
Do I need AAA/RADIUS experience first?
Basic AAA familiarity helps, but switches are already configured as 802.1X authenticators so you can focus on ISE-side policy.
All prices in GBP
This lab includes
Ready to run this lab yourself?
Dedicated 1:1 access, booked by the session. No shared environments.