<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic External Identity Sources, binding RSA securID to ISE in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/external-identity-sources-binding-rsa-securid-to-ise/m-p/2118761#M171520</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Tarik&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for reply. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will give a try on this. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Happy new year&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Noel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 31 Dec 2012 02:43:10 GMT</pubDate>
    <dc:creator>yong khang NG</dc:creator>
    <dc:date>2012-12-31T02:43:10Z</dc:date>
    <item>
      <title>External Identity Sources, binding RSA securID to ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/external-identity-sources-binding-rsa-securid-to-ise/m-p/2118759#M171435</link>
      <description>&lt;P&gt;Hi all, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Say, my topology was using ISE doing VPN inline posture, and bind RSA securID (version 7.1) as external Identity Sources. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;During&amp;nbsp; the deployment, in order to let my iPEP node join the Policy Service&amp;nbsp; Node, for the certificate i using the third party CA server (Window&amp;nbsp; server 2008 R2) as the root CA, both of these 2 ISE were mutual&amp;nbsp; authenticated and done. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My question. as i using&amp;nbsp; RSA secureID as external identity sources, native behaviour, Will the&amp;nbsp; ISE trust RSA with no identity certificate signed by the identitical&amp;nbsp; root CA? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should i enroll this RSA appliance issue the CSR to CA server to sign and in the PKI environment? Is there a need for this? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Noel&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:55:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/external-identity-sources-binding-rsa-securid-to-ise/m-p/2118759#M171435</guid>
      <dc:creator>yong khang NG</dc:creator>
      <dc:date>2019-03-11T02:55:35Z</dc:date>
    </item>
    <item>
      <title>Re: External Identity Sources, binding RSA securID to ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/external-identity-sources-binding-rsa-securid-to-ise/m-p/2118760#M171476</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Noel,&lt;BR /&gt;&lt;BR /&gt;From my experience when integrating with the RSA token server you need the sdconf.rec file exported from the RSA and you import that into the ISE configuration. You then select this identity store with your authentication policies for vpn users. There isnt a need for any certificates when integrating with a token server (that was the last time I checked) and even if there would just need to trust each other's certficats.&lt;BR /&gt;&lt;BR /&gt;I hope that helps!&lt;BR /&gt;&lt;BR /&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Dec 2012 02:33:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/external-identity-sources-binding-rsa-securid-to-ise/m-p/2118760#M171476</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-12-31T02:33:45Z</dc:date>
    </item>
    <item>
      <title>External Identity Sources, binding RSA securID to ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/external-identity-sources-binding-rsa-securid-to-ise/m-p/2118761#M171520</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Tarik&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for reply. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will give a try on this. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Happy new year&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Noel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Dec 2012 02:43:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/external-identity-sources-binding-rsa-securid-to-ise/m-p/2118761#M171520</guid>
      <dc:creator>yong khang NG</dc:creator>
      <dc:date>2012-12-31T02:43:10Z</dc:date>
    </item>
  </channel>
</rss>

