<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ISE NAC Agent RDP session in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152632#M145510</link>
    <description>&lt;P&gt;Is there a way to get the NAC Agent to run when a user logs on a Windows machine in a RDP session?&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 03:08:31 GMT</pubDate>
    <dc:creator>jms112080</dc:creator>
    <dc:date>2019-03-11T03:08:31Z</dc:date>
    <item>
      <title>Cisco ISE NAC Agent RDP session</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152632#M145510</link>
      <description>&lt;P&gt;Is there a way to get the NAC Agent to run when a user logs on a Windows machine in a RDP session?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 03:08:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152632#M145510</guid>
      <dc:creator>jms112080</dc:creator>
      <dc:date>2019-03-11T03:08:31Z</dc:date>
    </item>
    <item>
      <title>fyi, the device which will</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152633#M145511</link>
      <description>&lt;P&gt;fyi, the device which will give services of RDP to other clients should have NAC if it has to be part of any network.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Apr 2014 09:40:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152633#M145511</guid>
      <dc:creator>Saurav Lodh</dc:creator>
      <dc:date>2014-04-22T09:40:25Z</dc:date>
    </item>
    <item>
      <title>You have to go and check the</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152634#M145512</link>
      <description>&lt;P&gt;You have to go and check the dACL that is part of authorization profile, you will find that it is blocking your RDP access as when you do a remote desktop your authentication token is host/machine-name.domain. Now, the easiest FIX to permit RDP traffic is to modify the dACL but this won't solve your problem. Why? Because now your dACL will allow you do a remote desktop now BUT it will block rest of your communication.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So either you permit all as soon as your machine is authenticated or you will continue to face this issue.&lt;/P&gt;</description>
      <pubDate>Fri, 02 May 2014 13:13:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152634#M145512</guid>
      <dc:creator>ankur1984</dc:creator>
      <dc:date>2014-05-02T13:13:14Z</dc:date>
    </item>
    <item>
      <title>Hi ankur1984How can I permit</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152635#M145513</link>
      <description>&lt;P&gt;Hi&lt;SPAN class="fullname"&gt;&lt;SPAN rel="sioc:has_creator"&gt;&lt;A class="username" href="https://supportforums.cisco.com/users/ankur1984" title="View user profile."&gt; ankur1984&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;How can I permit RDP for one user only ?&lt;/P&gt;&lt;P&gt;for exemple windows user login administrator_123 ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Oct 2014 09:40:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152635#M145513</guid>
      <dc:creator>nicanor00</dc:creator>
      <dc:date>2014-10-02T09:40:57Z</dc:date>
    </item>
    <item>
      <title>Microsoft supplicant does not</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152636#M145514</link>
      <description>&lt;P&gt;Microsoft supplicant does not support 802.1X &amp;amp; RDP sessions per user, as detailed in &lt;A href="http://support.microsoft.com/kb/2820847" target="_blank"&gt;http://support.microsoft.com/kb/2820847&lt;/A&gt;. An alternative is to adopt the supplicant Cisco AnyConnect NAM (Network Access Manager), which is free and supports RDP sessions &amp;amp; 802.1x for user.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Oct 2014 13:46:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152636#M145514</guid>
      <dc:creator>Emerson Oliveira</dc:creator>
      <dc:date>2014-10-02T13:46:44Z</dc:date>
    </item>
    <item>
      <title>Microsoft supplicant does not</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152637#M145515</link>
      <description>&lt;P&gt;Microsoft supplicant does not support 802.1X &amp;amp; RDP sessions per user, as detailed in &lt;A href="http://support.microsoft.com/kb/2820847" target="_blank"&gt;http://support.microsoft.com/kb/2820847&lt;/A&gt;. An alternative is to adopt the supplicant Cisco AnyConnect NAM (Network Access Manager), which is free and supports RDP sessions &amp;amp; 802.1x for user.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Oct 2014 13:47:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152637#M145515</guid>
      <dc:creator>Emerson Oliveira</dc:creator>
      <dc:date>2014-10-02T13:47:12Z</dc:date>
    </item>
    <item>
      <title>Hi Nicanor00,Unfortunately in</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152638#M145516</link>
      <description>&lt;P&gt;Hi Nicanor00,&lt;/P&gt;&lt;P&gt;Unfortunately in the current scenario you can only user machine authentication to create your authorization profiles or you can use '&lt;SPAN class="fullname" style="color: rgb(153, 153, 153);"&gt;&lt;SPAN rel="sioc:has_creator"&gt;&lt;A about="/users/securityreports" class="username" datatype="" href="https://supportforums.cisco.com/users/securityreports" property="foaf:name" title="View user profile." typeof="sioc:UserAccount" lang=""&gt;security reports&lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;' suggestion but i haven't tried that personally.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;Ankur&lt;/P&gt;</description>
      <pubDate>Mon, 06 Oct 2014 13:26:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152638#M145516</guid>
      <dc:creator>ankur1984</dc:creator>
      <dc:date>2014-10-06T13:26:18Z</dc:date>
    </item>
    <item>
      <title>Thanks for sharing your</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152639#M145517</link>
      <description>&lt;P&gt;Thanks for sharing your thoughts securityreports but i have a mandate be implement this without a supplicant and hence the challenge.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-Ankur&lt;/P&gt;</description>
      <pubDate>Mon, 06 Oct 2014 13:30:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-nac-agent-rdp-session/m-p/2152639#M145517</guid>
      <dc:creator>ankur1984</dc:creator>
      <dc:date>2014-10-06T13:30:37Z</dc:date>
    </item>
  </channel>
</rss>

