<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE config with Mac filtering in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816617#M40853</link>
    <description>&lt;P&gt;We are setting up ISE. I need to setup a rule that uses 802.1x authentication to authenticate a user plus the MAC address of the machine must be in an endpoint group and it has to be on a particular ssid. If the user is connecting to the wrong ssid or the Mac is in the wrong endpoint group it should fail to connect. Is that possible with ISE 2.0?&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 06:24:40 GMT</pubDate>
    <dc:creator>Eric Lindsey</dc:creator>
    <dc:date>2019-03-11T06:24:40Z</dc:date>
    <item>
      <title>ISE config with Mac filtering</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816617#M40853</link>
      <description>&lt;P&gt;We are setting up ISE. I need to setup a rule that uses 802.1x authentication to authenticate a user plus the MAC address of the machine must be in an endpoint group and it has to be on a particular ssid. If the user is connecting to the wrong ssid or the Mac is in the wrong endpoint group it should fail to connect. Is that possible with ISE 2.0?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:24:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816617#M40853</guid>
      <dc:creator>Eric Lindsey</dc:creator>
      <dc:date>2019-03-11T06:24:40Z</dc:date>
    </item>
    <item>
      <title>Yes, use endpoint identity</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816618#M40854</link>
      <description>&lt;P&gt;Yes, use endpoint identity group with the MAC address combined with a condition checking AD group membership and that the Airespace-WLAN-ID=xx or Radius Called Station ID ends with the SSID name in the authorization policy.&lt;/P&gt;</description>
      <pubDate>Thu, 21 Jan 2016 15:18:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816618#M40854</guid>
      <dc:creator>jj27</dc:creator>
      <dc:date>2016-01-21T15:18:45Z</dc:date>
    </item>
  </channel>
</rss>

