<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE deployment in wireless infra without WLC (only Access Point  in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971641#M191354</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Tarik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 04 Jul 2012 04:31:56 GMT</pubDate>
    <dc:creator>shekharmore003</dc:creator>
    <dc:date>2012-07-04T04:31:56Z</dc:date>
    <item>
      <title>ISE deployment in wireless infra without WLC (only Access Point 1240AG)</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971637#M191350</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am having access point 1240AG and planning to deploy ISE as a exteral radius server. I would like to know how deifferent authorization policy need to configure in AP/ISE. Whether I can use named ACL or VLANs (CoA) as a enforcement types without use of WLC. If yes then how?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:15:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971637#M191350</guid>
      <dc:creator>shekharmore003</dc:creator>
      <dc:date>2019-03-11T02:15:30Z</dc:date>
    </item>
    <item>
      <title>ISE deployment in wireless infra without WLC (only Access Point</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971638#M191351</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can perform COA on standalone APs you will need to have an inline posture node in order to reap the benefits of COA, you may have heard this from any vpn related deployments. If you are in the design phase of this project, you may want to purse controllers because the latest rumor is that the inline posture node may be dropped since Cisco is planning on supporting coa on all their devices once the 9.x code drops for the ASAs. However please contact your Cisco rep for an official response.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the footnote in the following link: "Autonomous AP deployments (no WLC) also require deployment of an Inline Posture Node for posture support."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/ise/1.1/compatibility/ise_sdt.html#wp55038"&gt;http://www.cisco.com/en/US/docs/security/ise/1.1/compatibility/ise_sdt.html#wp55038&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Jul 2012 16:54:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971638#M191351</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-07-02T16:54:59Z</dc:date>
    </item>
    <item>
      <title>ISE deployment in wireless infra without WLC (only Access Point</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971639#M191352</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Tarik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help. But I would like to know that, How different authorization policy can be assigned to AP/ISE without using Inline posture node. Is it possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Jul 2012 06:14:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971639#M191352</guid>
      <dc:creator>shekharmore003</dc:creator>
      <dc:date>2012-07-03T06:14:06Z</dc:date>
    </item>
    <item>
      <title>Re: ISE deployment in wireless infra without WLC (only Access Po</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971640#M191353</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No this isnt possible, because the ios code that the access points run in autonomous mode do not support Change of Authorization (CoA). They will authenticate the user, and when a coa event is triggered from ISE, that is when this deployment breaks and the request gets dropped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Message was edited by: Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Jul 2012 14:43:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971640#M191353</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-07-03T14:43:41Z</dc:date>
    </item>
    <item>
      <title>ISE deployment in wireless infra without WLC (only Access Point</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971641#M191354</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Tarik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jul 2012 04:31:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971641#M191354</guid>
      <dc:creator>shekharmore003</dc:creator>
      <dc:date>2012-07-04T04:31:56Z</dc:date>
    </item>
    <item>
      <title>Re: ISE deployment in wireless infra without WLC (only Access Po</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971642#M191355</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry I had to edit my answer from controllers to access points!!! I should proof read a little bit.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and I am glad that I helped.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jul 2012 05:38:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971642#M191355</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-07-04T05:38:21Z</dc:date>
    </item>
    <item>
      <title>Re: ISE deployment in wireless infra without WLC (only Access Po</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971643#M191356</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I already figure out the typo. Thanks &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jul 2012 06:19:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971643#M191356</guid>
      <dc:creator>shekharmore003</dc:creator>
      <dc:date>2012-07-04T06:19:32Z</dc:date>
    </item>
    <item>
      <title>ISE deployment in wireless infra without WLC (only Access Point</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971644#M191357</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI&lt;/P&gt;&lt;P&gt;but how far can i get with only access point ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 22 Sep 2012 21:24:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971644#M191357</guid>
      <dc:creator>eng.malak</dc:creator>
      <dc:date>2012-09-22T21:24:26Z</dc:date>
    </item>
    <item>
      <title>ISE deployment in wireless infra without WLC (only Access Point</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971645#M191358</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You only get basic radius authentication. None of the features that use coa will work like posturing or dynamic profiling.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 22 Sep 2012 22:31:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971645#M191358</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-09-22T22:31:42Z</dc:date>
    </item>
    <item>
      <title>Re: ISE deployment in wireless infra without WLC (only Access Po</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971646#M191359</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So can i do Machine authentication and domain authentication ?can i put users behind AP In different  VLANS ?if yes what configuration should i put on AP the uplink port on Switch? Thank you in advance &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 23 Sep 2012 06:10:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971646#M191359</guid>
      <dc:creator>eng.malak</dc:creator>
      <dc:date>2012-09-23T06:10:14Z</dc:date>
    </item>
    <item>
      <title>ISE deployment in wireless infra without WLC (only Access Point</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971647#M191360</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You can use machine authentication and user authentication since the AP supports PEAP. For the uplink all you need to do is trunk the management and access vlans for each ssid that you have configured.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I dont know how standalone APs work I assume just like any other flexconnect or HREAP logic, it is able to tag user traffic based on the SSID they connect to? If so, then you only need to add the vlans allow them access and also management vlan from the AP itself.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 23 Sep 2012 06:16:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-deployment-in-wireless-infra-without-wlc-only-access-point/m-p/1971647#M191360</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-09-23T06:16:51Z</dc:date>
    </item>
  </channel>
</rss>

