<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: profiling pcs in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980889#M186023</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How are they joining the network....wireless or wired?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 13 Aug 2012 20:50:32 GMT</pubDate>
    <dc:creator>Tarik Admani</dc:creator>
    <dc:date>2012-08-13T20:50:32Z</dc:date>
    <item>
      <title>profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980883#M186016</link>
      <description>&lt;P&gt;I use ISE only for profiling ( no posturing ) and it's L3 adjent with other devices (wlc).&lt;/P&gt;&lt;P&gt;for iphones and stuff I only need OUI=Apple and i'm good ( no need to go deeper), but I'm having problems identifiying Laptops, they show up as unknown, eventhough I use the DHCP option.&lt;/P&gt;&lt;P&gt;Is there any quick rule to identify them, DHCP or Radius or whatever?, or maybe a redirect to ISE http somehow but I don't want them to posture and all that(including NAC Agents), I just want to identify them and then assign appropriate access.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:25:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980883#M186016</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2019-03-11T02:25:10Z</dc:date>
    </item>
    <item>
      <title>Re: profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980884#M186017</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are they not being profiled as a workstation? When you check the endpoint what does policy match does it show? Do you see any of the dhcp attributes in the endpoint attribute list?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, you can build a posture redirect policy but do not create any client provisioning rules, what this does it will redirect the client, gather the http user agent string, then it will profile the user and issue coa.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The user will see a message that lets them know a profile doesn't match but the can retry their request n 60 seconds.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:24:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980884#M186017</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-13T20:24:28Z</dc:date>
    </item>
    <item>
      <title>Re: profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980885#M186019</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;EndPointSource&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; RADIUS Probe &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:35:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980885#M186019</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-13T20:35:12Z</dc:date>
    </item>
    <item>
      <title>profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980886#M186020</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;this is for iphones:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Total Certainty Factor&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 40&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;EndPointSource&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; RADIUS Probe &lt;/P&gt;&lt;TABLE cellspacing="10"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;dhcp-client-identifier&lt;/TD&gt;&lt;TD&gt;01:ec:85:2f:be:56:dd&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;dhcp-message-type&lt;/TD&gt;&lt;TD&gt;DHCPREQUEST&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;dhcp-parameter-request-list&lt;/TD&gt;&lt;TD&gt;1, 3, 6, 15, 119, 252&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FOR PCS&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;Total Certainty Factor&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 and no DHCP eventhough i have set DHCP = class-identifier CONTAINS MSFT&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:40:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980886#M186020</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-13T20:40:11Z</dc:date>
    </item>
    <item>
      <title>Re: profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980887#M186021</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you seeing this with all your workstations? Do you have a static ip configured on the client? Also is the windows client wireless just like the apple device?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:43:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980887#M186021</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-13T20:43:54Z</dc:date>
    </item>
    <item>
      <title>Re: profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980888#M186022</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well I've tried two IBM laptops so far with different OUIs and they show up as unknown, no static ip on the client pc.&lt;/P&gt;&lt;P&gt;not sure what you mean by: &lt;/P&gt;&lt;P&gt;Also is the windows client wireless just like the apple device?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:48:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980888#M186022</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-13T20:48:35Z</dc:date>
    </item>
    <item>
      <title>Re: profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980889#M186023</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How are they joining the network....wireless or wired?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:50:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980889#M186023</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-13T20:50:32Z</dc:date>
    </item>
    <item>
      <title>Re: profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980890#M186024</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Everything is wireless same ssid, NO DHCP PROXY, added ISE_IP_ADDRESS in the ip-helper config.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:52:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980890#M186024</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-13T20:52:31Z</dc:date>
    </item>
    <item>
      <title>Re: profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980891#M186025</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is the dhcp probe enabled under the deployment settings?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:55:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980891#M186025</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-13T20:55:58Z</dc:date>
    </item>
    <item>
      <title>profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980892#M186026</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes on both, primary/secondary, i've got secondary as a primary monitor node.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 20:57:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980892#M186026</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-13T20:57:02Z</dc:date>
    </item>
    <item>
      <title>profiling pcs</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980893#M186027</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;One way to troubleshoot this is to use the tcdump utiltity to see if the dhcp packet is hitting the ISE node. See if you can set the filter for 'ip host sviofvlan' and then run the capture after reassociating to the network. Then see if the mac address of you client and dhcp requests comes to ISE.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 13 Aug 2012 21:11:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-pcs/m-p/1980893#M186027</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-13T21:11:45Z</dc:date>
    </item>
  </channel>
</rss>

