Skip to main content

ADR 006: Use Cisco ISE for TACACS Only

Date: 2026-01-05

Status

✅ Accepted

Context

Cisco Identity Services Engine (ISE) initial development included support for:

  • TACACS services
  • Network Access Control (NAC) services

For the current AWS-hosted production deployment, the intended and supported use case is TACACS only.

There is no ongoing requirement to implement or maintain Cisco ISE NAC capabilities as part of this solution.

Decision

Cisco ISE will be used only for TACACS going forward.

Cisco ISE NAC will not be implemented, supported, or referenced as part of this deployment.

All references to:

  • ISE NAC
  • Network Access Control
  • NAC-related architecture
  • NAC-related operational processes

must be removed from current and future documentation for this service unless explicitly required for historical context.

This page was last reviewed on 16 March 2026. It needs to be reviewed again on 16 March 2031 by the page owner #nvvs-devops .