Cisco ISE: Identify and Manage Network Access

Cisco ISE 3.4 is ready for your network

In a zero-trust architecture, Cisco Identity Services Engine (ISE) is the policy decision point. It gathers intel from the stack to authenticate users and endpoints, automatically identifying threats.

New ISE Project?

Contact Us today and allow us to design a solution that meets your needs in topography, security, and endpoint management.

The discovery ports listed in the following table are used to determine what device is present.

Port number Port assignment
4Closed Port
21FTP
22SSH
23telnet
80HTTP
135Windows RPC
161SNMP
443HTTPS
513rlogin
902VMware Authentication Daemon
3940Discovery for z/OS Agent
5985PowerShell HTTP
5986PowerShell HTTPS
5988WBEM HTTP
5989WBEM HTTPS
SourceDefault Port ProtocolDirectionalityReason
Main Appliance (MA)389 (TCP/UDP)LDAPMA to targets Active Directory Sync
Remote Collector(s) RC 53 (TCP) DNSDevice to targets DNS Zone Discovery
Remote Collector(s) RC 623 (UDP)IPMIRC to targetsIPMI-based discovery of management interfaces
Remote Collector(s) RC 22 (TCP)SSHRC to targetsSSH-based discovery of Linux and Unix systems
Remote Collector(s) RC 161 (UDP)SNMPRC to targetsSNMP discovery of network equipment
Cisco ISE

Live instant demo

​Try it yourself. Learn how to detect and neutralize threats in our live environment.

Cisco ISE