<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic if you have a list of all the in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/specific-users-on-ise/m-p/2995484#M37569</link>
    <description>&lt;P&gt;if you have a list of all the mac addresses for the manager devices, then you can do the following -&lt;/P&gt;
&lt;P&gt;enable mac filtering on the ssid&lt;/P&gt;
&lt;P&gt;import the mac addresses into ISE, reference the endpoint identity group in an authorization policy, you can even add the SSID name via the called-station attribute to your policy.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;ISE will only allow approved mac addresses after they enter the proper psk from the ssid.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
    <pubDate>Wed, 16 Nov 2016 23:14:38 GMT</pubDate>
    <dc:creator>Tarik Admani</dc:creator>
    <dc:date>2016-11-16T23:14:38Z</dc:date>
    <item>
      <title>Specific users on ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/specific-users-on-ise/m-p/2995483#M37566</link>
      <description>&lt;P&gt;Dears,&lt;/P&gt;
&lt;P&gt;I have a wireless ssid for managers on this ssid only manager&amp;nbsp;should connect&amp;nbsp;and it is working through pre-shared key authentication. At present the password is known to most of the non manager users what I want is that only managers laptop MAC address should only be allowed on this SSID rest others should not connect.&lt;/P&gt;
&lt;P&gt;How I can achieve the above ??&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 07:14:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/specific-users-on-ise/m-p/2995483#M37566</guid>
      <dc:creator>jack samuel</dc:creator>
      <dc:date>2019-03-11T07:14:08Z</dc:date>
    </item>
    <item>
      <title>if you have a list of all the</title>
      <link>https://community.cisco.com/t5/network-access-control/specific-users-on-ise/m-p/2995484#M37569</link>
      <description>&lt;P&gt;if you have a list of all the mac addresses for the manager devices, then you can do the following -&lt;/P&gt;
&lt;P&gt;enable mac filtering on the ssid&lt;/P&gt;
&lt;P&gt;import the mac addresses into ISE, reference the endpoint identity group in an authorization policy, you can even add the SSID name via the called-station attribute to your policy.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;ISE will only allow approved mac addresses after they enter the proper psk from the ssid.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Nov 2016 23:14:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/specific-users-on-ise/m-p/2995484#M37569</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2016-11-16T23:14:38Z</dc:date>
    </item>
    <item>
      <title>You can create endpoint</title>
      <link>https://community.cisco.com/t5/network-access-control/specific-users-on-ise/m-p/2995485#M37570</link>
      <description>&lt;P&gt;You can create endpoint identity group where you can put all mac addresses want to allow.&lt;/P&gt;
&lt;P&gt;Can use this same identity group with Airspace wlan-id &amp;nbsp;as a condition in authorization policy. This way it will work for specific SSID and endpoint group.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Gagan&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rate if it helps!!!!!&lt;/P&gt;</description>
      <pubDate>Thu, 17 Nov 2016 10:04:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/specific-users-on-ise/m-p/2995485#M37570</guid>
      <dc:creator>Gagandeep Singh</dc:creator>
      <dc:date>2016-11-17T10:04:59Z</dc:date>
    </item>
  </channel>
</rss>

