<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE 2.7 guest flow issue in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995544#M455274</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thank you all for the replies. I'm using ISE guest for several years and version with Guest Users identity sources and everything worked fine. I thought that it's needed for the second authentication (guest account). Probably it works a little different that I thought. Never mind I can change it easily.&lt;/P&gt;&lt;P&gt;But still there's something different in the 2.7. I don't think it should end up with process failed, I would expect that it ends on User not Found.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Jiri&lt;/P&gt;</description>
    <pubDate>Sun, 08 Dec 2019 21:40:11 GMT</pubDate>
    <dc:creator>Jiri Krystynek</dc:creator>
    <dc:date>2019-12-08T21:40:11Z</dc:date>
    <item>
      <title>ISE 2.7 guest flow issue</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3994591#M455140</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I tried guest flow in ISE 2.7 and I'm facing issue with initial MAC authentication for redirect. I have standard configuration - identity source Guest Users with "If User now found" option set to Continue - the standard settings I guess.&lt;/P&gt;&lt;P&gt;When the MAC arrive from WLC the authentication fails with Process fail. When I set identity source Internal Endpoints it works. Something changed in the 2.7 version or it's a bug?&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Jiri&lt;/P&gt;</description>
      <pubDate>Fri, 06 Dec 2019 06:05:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3994591#M455140</guid>
      <dc:creator>Jiri Krystynek</dc:creator>
      <dc:date>2019-12-06T06:05:30Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.7 guest flow issue</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995164#M455141</link>
      <description>&lt;P&gt;For ISE Central WebAuth, it always has been required to setup Internal Endpoints for the identity source in the policy set. The guest users or any other identity source sequence is defined on the portal it self.&lt;/P&gt;</description>
      <pubDate>Sat, 07 Dec 2019 00:14:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995164#M455141</guid>
      <dc:creator>howon</dc:creator>
      <dc:date>2019-12-07T00:14:11Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.7 guest flow issue</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995484#M455273</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/249691"&gt;@Jiri Krystynek&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I tried guest flow in ISE 2.7 and I'm facing issue with initial MAC authentication for redirect. I have standard configuration - identity source Guest Users with "If User now found" option set to Continue - the standard settings I guess.&lt;/P&gt;
&lt;P&gt;When the MAC arrive from WLC the authentication fails with Process fail. When I set identity source Internal Endpoints it works. Something changed in the 2.7 version or it's a bug?&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Jiri&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;Depends on how you configured it. If you used the defaults policies then it should work. If you created a new auth policy then you will likely need to change it&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-documents/ise-guest-access-prescriptive-deployment-guide/ta-p/3640475" target="_blank"&gt;https://community.cisco.com/t5/security-documents/ise-guest-access-prescriptive-deployment-guide/ta-p/3640475&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 08 Dec 2019 17:34:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995484#M455273</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-12-08T17:34:07Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.7 guest flow issue</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995544#M455274</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thank you all for the replies. I'm using ISE guest for several years and version with Guest Users identity sources and everything worked fine. I thought that it's needed for the second authentication (guest account). Probably it works a little different that I thought. Never mind I can change it easily.&lt;/P&gt;&lt;P&gt;But still there's something different in the 2.7. I don't think it should end up with process failed, I would expect that it ends on User not Found.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Jiri&lt;/P&gt;</description>
      <pubDate>Sun, 08 Dec 2019 21:40:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995544#M455274</guid>
      <dc:creator>Jiri Krystynek</dc:creator>
      <dc:date>2019-12-08T21:40:11Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.7 guest flow issue</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995768#M455275</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;changing identity source to Internal Endpoints fixed the issue.&lt;/P&gt;&lt;P&gt;Thank you for the help.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jiri&lt;/P&gt;</description>
      <pubDate>Mon, 09 Dec 2019 13:01:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995768#M455275</guid>
      <dc:creator>Jiri Krystynek</dc:creator>
      <dc:date>2019-12-09T13:01:21Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.7 guest flow issue</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995892#M455276</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/249691"&gt;@Jiri Krystynek&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;changing identity source to Internal Endpoints fixed the issue.&lt;/P&gt;
&lt;P&gt;Thank you for the help.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Jiri&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;Was it a new policy set or the built-in please?&lt;/P&gt;</description>
      <pubDate>Mon, 09 Dec 2019 16:34:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-guest-flow-issue/m-p/3995892#M455276</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-12-09T16:34:01Z</dc:date>
    </item>
  </channel>
</rss>

