<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Philip, in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825181#M41048</link>
    <description>&lt;P&gt;Hi Philip,&lt;/P&gt;
&lt;P&gt;Good Day!&lt;/P&gt;
&lt;P&gt;Just to clarify, I will used this attribute as the condition in my authorization rule right in ISE?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Tue, 12 Jan 2016 05:23:57 GMT</pubDate>
    <dc:creator>fatalXerror</dc:creator>
    <dc:date>2016-01-12T05:23:57Z</dc:date>
    <item>
      <title>Remote Access VPN with ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825179#M41046</link>
      <description>&lt;P&gt;Hi Guys,&lt;/P&gt;
&lt;P&gt;Good Day!&lt;/P&gt;
&lt;P&gt;May I ask if it is possible in ISE 1.4 for me to configure authorization profile to check if User1 tries to connect to a specific tunnel-group which is configured in the ASA?&lt;/P&gt;
&lt;P&gt;Thank you and have a nice day!&lt;/P&gt;
&lt;P&gt;Cheers&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:23:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825179#M41046</guid>
      <dc:creator>fatalXerror</dc:creator>
      <dc:date>2019-03-11T06:23:04Z</dc:date>
    </item>
    <item>
      <title>You need to use the Tunnel</title>
      <link>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825180#M41047</link>
      <description>&lt;P&gt;You need to use the Tunnel Group Lock option. Take a look at this post.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportforums.cisco.com/discussion/11402831/connection-profile-tunnel-group-lock"&gt;https://supportforums.cisco.com/discussion/11402831/connection-profile-tunnel-group-lock&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jan 2016 05:19:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825180#M41047</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2016-01-12T05:19:28Z</dc:date>
    </item>
    <item>
      <title>Hi Philip,</title>
      <link>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825181#M41048</link>
      <description>&lt;P&gt;Hi Philip,&lt;/P&gt;
&lt;P&gt;Good Day!&lt;/P&gt;
&lt;P&gt;Just to clarify, I will used this attribute as the condition in my authorization rule right in ISE?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jan 2016 05:23:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825181#M41048</guid>
      <dc:creator>fatalXerror</dc:creator>
      <dc:date>2016-01-12T05:23:57Z</dc:date>
    </item>
    <item>
      <title>I don't know.  My guess is</title>
      <link>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825182#M41049</link>
      <description>&lt;P&gt;I don't know. &amp;nbsp;My guess is yes. &amp;nbsp;I have only used this with other products. &amp;nbsp;I just know the ASA needs to receive it.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jan 2016 06:33:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825182#M41049</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2016-01-12T06:33:37Z</dc:date>
    </item>
    <item>
      <title>Visit ISE policy &gt; policy</title>
      <link>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825183#M41050</link>
      <description>&lt;P&gt;Visit ISE policy &amp;gt; policy elements &amp;gt; conditions &amp;gt; In the condition inside advanced attributes select an attribute - "&lt;STRONG&gt;Cisco-VPN3000:Cisco-VPN3000:CVPN3000/ASA/PIX7x-Tunnel-Group-Lock" Equals &amp;lt;tunnel-group-name&amp;gt;. &lt;/STRONG&gt;Once done call this condition in the authorization rule and give appropriate permissions. Make sure this attribute or something similar like "&lt;STRONG&gt;Tunnel-group-name"&lt;/STRONG&gt; is coming in the radius request&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Jatin&lt;/P&gt;</description>
      <pubDate>Tue, 12 Jan 2016 10:21:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/remote-access-vpn-with-ise/m-p/2825183#M41050</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2016-01-12T10:21:52Z</dc:date>
    </item>
  </channel>
</rss>

