Cisco ISE pxGrid and SIEM Integration
Overview
A Cisco ISE deployment paired with an integration jump host, for building real pxGrid subscriber/publisher connections into a SIEM-style ecosystem. This pod is about the integration surface, not ISE policy configuration alone.
Images included
- A Cisco ISE appliance image with pxGrid services enabled
- A Linux jump host image with pxGrid client libraries installed
- A Security Onion (SIEM/NSM) platform image as the integration target
Environment & resources
An ISE node with pxGrid enabled, connected to a jump host set up to act as a pxGrid client, so subscribing to session data and pushing adaptive network control actions is a real integration, not a mock API.
Data-center and identity-scale gear: fabric switches and appliances that need real headroom.
FAQ
Do I need a real SIEM product license to complete this?
No, the pod's SIEM-style integration target stands in for a real SIEM so you can exercise the pxGrid ecosystem without needing a separate license.
What pxGrid version does ISE run here?
The pod runs pxGrid 2.0 (the current topic-based model), matching what modern SIEM/SOAR integrations expect.
All prices in GBP
This lab includes
Ready to run this lab yourself?
Dedicated 1:1 access, booked by the session. No shared environments.