DataConnect Views Reference

Overview

ISE DataConnect exposes 70 Oracle views providing read-only access to operational data. This reference documents column schemas, data types, and JOIN relationships.

Category Views Use Case

RADIUS Authentication

RADIUS_AUTHENTICATIONS, RADIUS_AUTHENTICATIONS_WEEK, RADIUS_ERRORS_VIEW

Auth troubleshooting, success rates

RADIUS Accounting

RADIUS_ACCOUNTING, RADIUS_ACCOUNTING_WEEK

Session duration, data usage

Endpoints & Profiling

ENDPOINTS_DATA, PROFILED_ENDPOINTS_SUMMARY, ENDPOINT_IDENTITY_GROUPS

Device inventory, profiler data

TACACS+

TACACS_AUTHENTICATION, TACACS_COMMAND_ACCOUNTING

Device admin, command audit

Audit & Admin

ADMINISTRATOR_LOGINS, CHANGE_CONFIGURATION_AUDIT

Compliance, change tracking

Policy & Authorization

POLICY_SETS, AUTHORIZATION_PROFILES, SECURITY_GROUPS

Policy definitions

Identity Sources

EXT_ID_SRC_ACTIVE_DIRECTORY, EXT_ID_SRC_LDAP, NETWORK_ACCESS_USERS

Identity store config

Quick Schema Discovery

# List all views
netapi ise dc query "SELECT view_name FROM all_views WHERE owner = 'DATACONNECT' ORDER BY view_name"

# Get columns for a view
netapi ise dc query "SELECT column_name, data_type FROM all_tab_columns WHERE table_name = 'RADIUS_AUTHENTICATIONS' ORDER BY column_id"

# Sample data from any view
netapi ise dc query "SELECT * FROM RADIUS_AUTHENTICATIONS FETCH FIRST 3 ROWS ONLY"

JOIN Relationships

The primary key for joining endpoint-related data is MAC address:

RADIUS_AUTHENTICATIONS.CALLING_STATION_ID  ←→  ENDPOINTS_DATA.MAC_ADDRESS
RADIUS_AUTHENTICATIONS.CALLING_STATION_ID  ←→  PROFILED_ENDPOINTS_SUMMARY.ENDPOINT_ID
RADIUS_AUTHENTICATIONS.CALLING_STATION_ID  ←→  RADIUS_ACCOUNTING.CALLING_STATION_ID

Common JOIN Patterns

Auth + Endpoint Profile

netapi ise dc query "
SELECT
    r.CALLING_STATION_ID AS mac,
    r.USERNAME,
    r.PASSED,
    e.HOSTNAME,
    p.ENDPOINT_PROFILE
FROM RADIUS_AUTHENTICATIONS r
LEFT JOIN ENDPOINTS_DATA e ON r.CALLING_STATION_ID = e.MAC_ADDRESS
LEFT JOIN PROFILED_ENDPOINTS_SUMMARY p ON r.CALLING_STATION_ID = p.ENDPOINT_ID
WHERE r.TIMESTAMP_TIMEZONE > SYSDATE - 1
ORDER BY r.TIMESTAMP_TIMEZONE DESC
FETCH FIRST 20 ROWS ONLY
"

Auth + Accounting (Session Duration)

netapi ise dc query "
SELECT
    r.CALLING_STATION_ID AS mac,
    r.USERNAME,
    r.TIMESTAMP_TIMEZONE AS auth_time,
    a.ACCT_SESSION_TIME AS session_seconds,
    a.ACCT_INPUT_OCTETS + a.ACCT_OUTPUT_OCTETS AS total_bytes
FROM RADIUS_AUTHENTICATIONS r
JOIN RADIUS_ACCOUNTING a ON r.CALLING_STATION_ID = a.CALLING_STATION_ID
    AND r.SESSION_ID = a.SESSION_ID
WHERE r.TIMESTAMP_TIMEZONE > SYSDATE - 1
    AND a.ACCT_STATUS_TYPE = 'Stop'
ORDER BY a.ACCT_SESSION_TIME DESC
FETCH FIRST 20 ROWS ONLY
"
netapi ise dc query "
SELECT
    e.MAC_ADDRESS,
    e.HOSTNAME,
    e.ENDPOINT_IP,
    p.ENDPOINT_PROFILE,
    p.IDENTITY_GROUP,
    (SELECT COUNT(*) FROM RADIUS_AUTHENTICATIONS r
     WHERE r.CALLING_STATION_ID = e.MAC_ADDRESS
     AND r.TIMESTAMP_TIMEZONE > SYSDATE - 7) AS auth_count_7d
FROM ENDPOINTS_DATA e
LEFT JOIN PROFILED_ENDPOINTS_SUMMARY p ON e.MAC_ADDRESS = p.ENDPOINT_ID
WHERE e.HOSTNAME IS NOT NULL
ORDER BY e.MAC_ADDRESS
FETCH FIRST 50 ROWS ONLY
"

All 70 Views

Complete View List
View Category

AAA_DIAGNOSTICS_VIEW

Diagnostics

ADAPTER_STATUS

System

ADAPTIVE_NETWORK_CONTROL

Threat

ADMINISTRATOR_LOGINS

Audit

ADMIN_USERS

Audit

AUP_ACCEPTANCE_STATUS

Guest

AUTHORIZATION_PROFILES

Policy

CHANGE_CONFIGURATION_AUDIT

Audit

COA_EVENTS

Threat

ENDPOINTS_DATA

Endpoints

ENDPOINT_IDENTITY_GROUPS

Endpoints

ENDPOINT_PURGE_VIEW

Endpoints

EXT_ID_SRC_ACTIVE_DIRECTORY

Identity

EXT_ID_SRC_CERT_AUTH_PROFILE

Identity

EXT_ID_SRC_LDAP

Identity

EXT_ID_SRC_ODBC

Identity

EXT_ID_SRC_RADIUS_TOKEN

Identity

EXT_ID_SRC_REST

Identity

EXT_ID_SRC_RSA_SECURID

Identity

EXT_ID_SRC_SAML_ID_PROVIDERS

Identity

EXT_ID_SRC_SOCIAL_LOGIN

Identity

FAILURE_CODE_CAUSE

System

GUEST_ACCOUNTING

Guest

GUEST_DEVICELOGIN_AUDIT

Guest

KEY_PERFORMANCE_METRICS

System

LOGICAL_PROFILES

Endpoints

MISCONFIGURED_NAS_VIEW

Network

MISCONFIGURED_SUPPLICANTS_VIEW

Network

NETWORK_ACCESS_USERS

Identity

NETWORK_DEVICES

Network

NETWORK_DEVICE_GROUPS

Network

NODE_LIST

System

OPENAPI_OPERATIONS

Audit

POLICY_SETS

Policy

POSTURE_ASSESSMENT_BY_CONDITION

Posture

POSTURE_ASSESSMENT_BY_ENDPOINT

Posture

POSTURE_GRACE_PERIOD

Posture

POSTURE_SCRIPT_CONDITION

Posture

POSTURE_SCRIPT_REMEDIATION

Posture

PRIMARY_GUEST

Guest

PROFILED_ENDPOINTS_SUMMARY

Endpoints

PROFILING_POLICIES

Endpoints

PXGRID_DIRECT_DATA

System

RADIUS_ACCOUNTING

Accounting

RADIUS_ACCOUNTING_WEEK

Accounting

RADIUS_AUTHENTICATIONS

Authentication

RADIUS_AUTHENTICATIONS_WEEK

Authentication

RADIUS_AUTHENTICATION_SUMMARY

Authentication

RADIUS_ERRORS_VIEW

Authentication

REGISTERED_ENDPOINTS

Endpoints

SECURITY_GROUPS

Policy

SECURITY_GROUP_ACLS

Policy

SPONSOR_LOGIN_AND_AUDIT

Guest

SYSTEM_DIAGNOSTICS_VIEW

System

SYSTEM_SUMMARY

System

TACACS_ACCOUNTING

TACACS

TACACS_ACCOUNTING_LAST_TWO_DAYS

TACACS

TACACS_AUTHENTICATION

TACACS

TACACS_AUTHENTICATION_LAST_TWO_DAYS

TACACS

TACACS_AUTHENTICATION_SUMMARY

TACACS

TACACS_AUTHORIZATION

TACACS

TACACS_AUTHORIZATION_LAST_TWO_DAYS

TACACS

TACACS_COMMAND_ACCOUNTING

TACACS

THREAT_EVENTS

Threat

UPSPOLICY

Policy

UPSPOLICYSET

Policy

UPSPOLICYSET_POLICIES

Policy

USER_IDENTITY_GROUPS

Identity

USER_PASSWORD_CHANGES

Audit

VULNERABILITY_ASSESSMENT_FAILURES

Threat

See Also