<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Yes, use endpoint identity in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816618#M40854</link>
    <description>&lt;P&gt;Yes, use endpoint identity group with the MAC address combined with a condition checking AD group membership and that the Airespace-WLAN-ID=xx or Radius Called Station ID ends with the SSID name in the authorization policy.&lt;/P&gt;</description>
    <pubDate>Thu, 21 Jan 2016 15:18:45 GMT</pubDate>
    <dc:creator>jj27</dc:creator>
    <dc:date>2016-01-21T15:18:45Z</dc:date>
    <item>
      <title>ISE config with Mac filtering</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816617#M40853</link>
      <description>&lt;P&gt;We are setting up ISE. I need to setup a rule that uses 802.1x authentication to authenticate a user plus the MAC address of the machine must be in an endpoint group and it has to be on a particular ssid. If the user is connecting to the wrong ssid or the Mac is in the wrong endpoint group it should fail to connect. Is that possible with ISE 2.0?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:24:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816617#M40853</guid>
      <dc:creator>Eric Lindsey</dc:creator>
      <dc:date>2019-03-11T06:24:40Z</dc:date>
    </item>
    <item>
      <title>Yes, use endpoint identity</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816618#M40854</link>
      <description>&lt;P&gt;Yes, use endpoint identity group with the MAC address combined with a condition checking AD group membership and that the Airespace-WLAN-ID=xx or Radius Called Station ID ends with the SSID name in the authorization policy.&lt;/P&gt;</description>
      <pubDate>Thu, 21 Jan 2016 15:18:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-config-with-mac-filtering/m-p/2816618#M40854</guid>
      <dc:creator>jj27</dc:creator>
      <dc:date>2016-01-21T15:18:45Z</dc:date>
    </item>
  </channel>
</rss>

