<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic [ISE] Posture Status - Not applicable in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911091#M226968</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I Have the same problem here, and my rule is witch Posture status EQUAL complaint.&lt;/P&gt;&lt;P&gt;Can help me?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 14 Dec 2012 18:32:42 GMT</pubDate>
    <dc:creator>Rafael Mendes</dc:creator>
    <dc:date>2012-12-14T18:32:42Z</dc:date>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911089#M226966</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I configured WiFi Guest Access with WLC and ISE and it works great.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now I want to check client posture.&lt;/P&gt;&lt;P&gt;I configured a posture policy&lt;/P&gt;&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/2/6/0/81062-posture_policy.PNG" alt="posture_policy.PNG" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On Windows7 client, I installed NAC client. With network sniffer, I can see SWISS protocol (TCP 8905) between client and ISE.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In authentications log, Posture Status is always "NotApplicable"&lt;/P&gt;&lt;P&gt;&lt;IMG src="https://community.cisco.com/legacyfs/online/legacy/1/6/0/81061-posture_not_applicable.PNG" alt="posture_not_applicable.PNG" class="jive-image-thumbnail jive-image" onclick="" width="450" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Why is this posture not applicable?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Patrick&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:53:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911089#M226966</guid>
      <dc:creator>Patrick Tran</dc:creator>
      <dc:date>2019-03-11T01:53:03Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911090#M226967</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You will need to check your authorization profile to make sure it has an action to check "session" "posture" EQUAL "complaint"&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 11 Mar 2012 11:25:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911090#M226967</guid>
      <dc:creator>karim hamandi</dc:creator>
      <dc:date>2012-03-11T11:25:10Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911091#M226968</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I Have the same problem here, and my rule is witch Posture status EQUAL complaint.&lt;/P&gt;&lt;P&gt;Can help me?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 14 Dec 2012 18:32:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911091#M226968</guid>
      <dc:creator>Rafael Mendes</dc:creator>
      <dc:date>2012-12-14T18:32:42Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911092#M226969</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Rafael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you please post a screenshot of your authorization policies?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 15 Dec 2012 06:29:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911092#M226969</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-12-15T06:29:03Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911093#M226970</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What is the Preauthentication ACL (ACL-POSTURE-REDIRECT) on the WLC?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 15 Dec 2012 20:59:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911093#M226970</guid>
      <dc:creator>Peter Koltl</dc:creator>
      <dc:date>2012-12-15T20:59:42Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911094#M226971</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Peter, is wired authetication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Screen shot of the authorization rules &lt;SPAN style="font-size: 10pt;"&gt;&lt;A class="jive-link-external-small" href="http://uploaddeimagens.com.br/imagens/auth-jpg"&gt;http://uploaddeimagens.com.br/imagens/auth-jpg&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 13:04:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911094#M226971</guid>
      <dc:creator>Rafael Mendes</dc:creator>
      <dc:date>2012-12-17T13:04:26Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911095#M226972</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you please post a screenshot of your settings for the authorization result for non compliant users, also do you have your client provisioning and posture policies configured?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Client provisioning - Is the profile that pushes out the client&lt;/P&gt;&lt;P&gt;Posture policies - Determines which rules that the clients must meet for posturing&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are you redirected and assigned to the proper vlan?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also can you post a screenshot of the endpoint attribute for your test client (does the posture applicable field appear and is it set to "NO").&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 16:18:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911095#M226972</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-12-17T16:18:37Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911096#M226973</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Tarik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Result NonCompliant: &lt;SPAN style="font-size: 10pt;"&gt;&lt;A class="jive-link-external-small" href="http://uploaddeimagens.com.br/imagens/result_noncompliant-jpg"&gt;http://uploaddeimagens.com.br/imagens/result_noncompliant-jpg&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Posture rule: &lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;A class="jive-link-external-small" href="http://uploaddeimagens.com.br/imagens/posture_rule-jpg"&gt;http://uploaddeimagens.com.br/imagens/posture_rule-jpg&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The client provisioning is set to force NAC Agent version 4.9.0.47&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes, the vlan is correct.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The major problem is the NotApplicable ststus in the posture log, &lt;SPAN style="font-size: 10pt;"&gt;the ISE is not applying the posture, some times works fine, some times dont work and appear the NotApplicable in the log.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 17:02:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911096#M226973</guid>
      <dc:creator>Rafael Mendes</dc:creator>
      <dc:date>2012-12-17T17:02:39Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911097#M226974</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Rafael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It looks like you are using chrome to manage your ISE (please do not use Chrome, it messes up your policies) please use mozilla so that I can get a better idea of what your remediation settings are set to. You may have to go back in and fix this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also you will need to turn on the web portal for posture discovery and all the remediation acl and redirection acls will have to be in order for this to work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Dec 2012 17:32:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911097#M226974</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-12-17T17:32:21Z</dc:date>
    </item>
    <item>
      <title>Re: [ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911098#M226975</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have a similar problem.&amp;nbsp;&amp;nbsp; I am running 1.1.3.&amp;nbsp; The strange thing is that it was working a week ago.&amp;nbsp; The client is not hitting the appropriate authorization profile and is being denied access because the clients posture status is Not Applicable.&amp;nbsp; The agent does not pop up, it just sits there idle.&amp;nbsp; Strange enough it worked fine on the wire.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ACL allows the hosts to talk on all ports to the PSNs.&amp;nbsp; The discovery host is configured, and sometimes the host says it is "logged in" even though it is not logged in.&amp;nbsp; Maybe this has to do with earlier wired connections.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there something I am missing in the client provisioning, or is there a bug?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 15:45:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911098#M226975</guid>
      <dc:creator>kylerossd</dc:creator>
      <dc:date>2013-03-22T15:45:47Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911099#M226976</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am also having the same problem since upgrading to 1.1.3.&amp;nbsp; Posturing seems to work fine when the Client is wired, but it never works on wireless.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 19:54:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911099#M226976</guid>
      <dc:creator>pdigiacomo</dc:creator>
      <dc:date>2013-04-02T19:54:22Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911100#M226977</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Same problem here,&lt;/P&gt;&lt;P&gt;Let's admit that ISE is having serious issues with Ethernet Switches for Downloadable ACL, redirection URL and so forth.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have been posting here for a While on that subject.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This product is not mature enough and need to much expertise depending on your Cat IOS, 12.2 for 3750 are unstable.&lt;/P&gt;&lt;P&gt;Sometime, I get connected, Agent OK, but the Windows says "connection failed".&lt;/P&gt;&lt;P&gt;Strange behaviour no ? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And you know what ?&lt;/P&gt;&lt;P&gt;ISE log shows everything OK !!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Cisco work on that, and RELASE STABLE SOFTWARE AS YOU USED TO DO !&lt;/P&gt;&lt;P&gt;I WON T RECOMMEND ISE AT ALL TO MY CUSTOMERS !!!!!!!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;V.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 20:47:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911100#M226977</guid>
      <dc:creator>vrz rrr</dc:creator>
      <dc:date>2013-04-02T20:47:06Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911101#M226978</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can anyone provide some screenshots for this issue? I am curious to&amp;nbsp; see how the policies are configured in the authorization policies. Also&amp;nbsp; are there any TAC cases opened to address any of these concerns just to&amp;nbsp; have a second set of eyes to rule out the configs? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also if you are running in a distributed deployment can you try to perform a full syncup (requires services to restart) to see if this fixes the issue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Apr 2013 23:44:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911101#M226978</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2013-04-02T23:44:37Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911102#M226979</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Tarik, thanks for trying to help !&lt;/P&gt;&lt;P&gt;I guess that we all have configured the Sw and ISE as described in the documentation.&lt;/P&gt;&lt;P&gt;It would be kind to give us a standard Sw config that works. In my opinion, dACL is the point to be clarified urgently.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How to configure dACL on ISE ? ( pre-posture, redirect ) ????&lt;/P&gt;&lt;P&gt;What are the ports ? ( 8443, 8905n any ?)&lt;/P&gt;&lt;P&gt;Do we need a ACL to be set in the Sw before the dACL is applied ???&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please answer those questions first, and we will provide you some logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'am not able to have a stable behaviour any more.&lt;/P&gt;&lt;P&gt;Lastest tested IOS : c3750-ipbasek9-mz.122-52.SE.bin (compatibility matrix on Cisco Website)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We waste of lot of time trying not to debug the software, but trying to find which parts work together.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again Tarik.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 07:11:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911102#M226979</guid>
      <dc:creator>vrz rrr</dc:creator>
      <dc:date>2013-04-03T07:11:03Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911103#M226980</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; vrz rrr,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is a standard switch configuration.&amp;nbsp; &lt;A href="http://www.cisco.com/en/US/docs/security/ise/1.1/user_guide/ise_sw_cnfg.html"&gt;http://www.cisco.com/en/US/docs/security/ise/1.1/user_guide/ise_sw_cnfg.html&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 13:23:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911103#M226980</guid>
      <dc:creator>kylerossd</dc:creator>
      <dc:date>2013-04-03T13:23:39Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911104#M226981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;kylerossd,&lt;/P&gt;&lt;P&gt;does not work. Thoses confs are not good.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;V.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 13:51:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911104#M226981</guid>
      <dc:creator>vrz rrr</dc:creator>
      <dc:date>2013-04-03T13:51:28Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911105#M226982</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I recommend you to first Verify/Create posture requirements&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; Policy &amp;gt; Policy Elements &amp;gt; Results &amp;gt; Posture &amp;gt; Requirements&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; The conditions are defined in the following location: Policy &amp;gt; Policy&amp;nbsp; Elements &amp;gt; Conditions &amp;gt; Posture.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; You also need to open these ports for the same&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; permit tcp any host 80.0.80.2 eq 8905 --&amp;gt; This is for posture&amp;nbsp; communication between NAC agent and ISE (Swiss ports)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; permit udp any host 80.0.80.2 eq 8905 --&amp;gt; This is for posture&amp;nbsp; communication between NAC agent and ISE (Swiss ports)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; permit udp any host 80.0.80.2 eq 8906 --&amp;gt; This is for posture&amp;nbsp;&amp;nbsp; communication between NAC agent and ISE (Swiss ports)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Apr 2013 17:19:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911105#M226982</guid>
      <dc:creator>bhthapa</dc:creator>
      <dc:date>2013-04-04T17:19:30Z</dc:date>
    </item>
    <item>
      <title>[ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911106#M226983</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Bhaskar, &lt;/P&gt;&lt;P&gt;that's a good point.&lt;/P&gt;&lt;P&gt;Now could you please give us the right posture ACL to be downloaded to the Switch (or set on a WLC). I think that some procotols are missing....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;V.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Apr 2013 18:10:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911106#M226983</guid>
      <dc:creator>vrz rrr</dc:creator>
      <dc:date>2013-04-04T18:10:11Z</dc:date>
    </item>
    <item>
      <title>Re: [ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911107#M226984</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I resolved my issue. I created a client agent profile and assigned agent version in client provisioning. Even though i didn't hAve to it seemed to help. It also appears that Symantec endpoint 11 causes issues, if you clean list the nac agent folder in Symantec endpoint protection the agent loads MUCH faster.&lt;BR /&gt;&lt;BR /&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Apr 2013 21:10:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911107#M226984</guid>
      <dc:creator>kylerossd</dc:creator>
      <dc:date>2013-04-04T21:10:18Z</dc:date>
    </item>
    <item>
      <title>Re: [ISE] Posture Status - Not applicable</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911108#M226985</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here are some ports which needs to be open please use these&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;permit tcp any host 80.0.80.2 eq 443 (This is for URL redirect)&lt;/P&gt;&lt;P&gt;permit tcp any host 80.0.80.2 eq www&lt;/P&gt;&lt;P&gt;permit udp any host 80.0.80.2 eq 8905 (This is for posture communication between NAC agent and ISE (Swiss ports))&lt;/P&gt;&lt;P&gt;permit udp any host 80.0.80.2 eq 8906 ( This is for posture communication between NAC agent and ISE (Swiss ports))&lt;/P&gt;&lt;P&gt;permit tcp any host 80.0.80.2 eq 8443 (This is for guest portal port)&lt;/P&gt;&lt;P&gt;permit tcp any host 80.0.80.2 eq 8905 (This is for posture communication between NAC agent and ISE (Swiss ports))&lt;/P&gt;&lt;P&gt;deny ip any any&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Apr 2013 10:46:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-status-not-applicable/m-p/1911108#M226985</guid>
      <dc:creator>bhthapa</dc:creator>
      <dc:date>2013-04-05T10:46:07Z</dc:date>
    </item>
  </channel>
</rss>

