<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE Posture Call Home List in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3883327#M471881</link>
    <description>&lt;P&gt;Check my &lt;A href="https://community.cisco.com/t5/identity-services-engine-ise/ise-posture-call-home-list/m-p/3882100/highlight/true#M28135" target="_self"&gt;earlier response to this thread&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Please test it out yourself as the Meraki gears in our lab are not currently working.&lt;/P&gt;</description>
    <pubDate>Tue, 02 Jul 2019 16:08:52 GMT</pubDate>
    <dc:creator>hslai</dc:creator>
    <dc:date>2019-07-02T16:08:52Z</dc:date>
    <item>
      <title>ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881547#M471856</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In our environment we are using meraki switches and as they do not support DACLs or ACLs for Posture redirection, we used call home list in the anyconnect configuration profile to let the endpoint reach the PSN. During redirection or before redirection, does the endpoint have access to all the resources in the network based on the VLAN configured on the connected switchport.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Aravind&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2019 15:01:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881547#M471856</guid>
      <dc:creator>aravikumar</dc:creator>
      <dc:date>2019-06-28T15:01:43Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881585#M471859</link>
      <description>&lt;P&gt;Meraki MS supports named ACL posture redirect. Suggest avoiding VLAN change pre/post posture if possible:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-6/compatibility/b_ise_sdt_26.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/ise/2-6/compatibility/b_ise_sdt_26.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2019 15:55:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881585#M471859</guid>
      <dc:creator>howon</dc:creator>
      <dc:date>2019-06-28T15:55:59Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881598#M471864</link>
      <description>&lt;P&gt;Hi Howon,&lt;/P&gt;&lt;P&gt;Thank you for your response. There is no place in Meraki platform to define a named ACL specifically for posture redirection for wired switches. We are able to apply redirection only for wireless using group policies. I have already reached out to Meraki regarding this. Please do let me know if something is changed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.meraki.com/t5/Switching/ISE-Posture-ACL/td-p/32853" target="_blank"&gt;https://community.meraki.com/t5/Switching/ISE-Posture-ACL/td-p/32853&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If We are using call home list in ISE, Is that going to restrict access to all other resources except PSN nodes?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Aravind&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2019 16:10:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881598#M471864</guid>
      <dc:creator>aravikumar</dc:creator>
      <dc:date>2019-06-28T16:10:23Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881635#M471870</link>
      <description>See meraki ISE guide&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://community.cisco.com/t5/security-documents/how-to-integrate-meraki-networks-with-ise/ta-p/3618650" target="_blank"&gt;https://community.cisco.com/t5/security-documents/how-to-integrate-meraki-networks-with-ise/ta-p/3618650&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;also this is another related doc&lt;BR /&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine-22/210523-ISE-posture-style-comparison-for-pre-and.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine-22/210523-ISE-posture-style-comparison-for-pre-and.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 28 Jun 2019 17:26:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881635#M471870</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-06-28T17:26:53Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881724#M471874</link>
      <description>&lt;P&gt;Hi Jason,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;DIV&gt;The document&amp;nbsp; provided does not say about configuring named ACL for redirection in wired switches for posture redirection. It just mentions about "wired CWA".&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Thanks,&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Aravind.&lt;/DIV&gt;</description>
      <pubDate>Fri, 28 Jun 2019 21:18:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881724#M471874</guid>
      <dc:creator>aravikumar</dc:creator>
      <dc:date>2019-06-28T21:18:06Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881772#M471877</link>
      <description>Redirect for guest is same for redirect for posture&lt;BR /&gt;</description>
      <pubDate>Sat, 29 Jun 2019 01:43:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3881772#M471877</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-06-29T01:43:53Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3882100#M471879</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;
&lt;P&gt;&lt;A href="https://community.meraki.com/t5/Switching/ISE-Posture-ACL/td-p/32853" target="_blank" rel="noopener"&gt;https://community.meraki.com/t5/Switching/ISE-Posture-ACL/td-p/32853&lt;/A&gt;&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;That gives&amp;nbsp;&lt;A href="https://documentation.meraki.com/MS/Access_Control/Change_of_Authorization_with_RADIUS_(CoA)_on_MS_Switches" target="_blank"&gt;Change of Authorization with RADIUS (CoA) on MS Switches&lt;/A&gt;, which mentions,&lt;/P&gt;
&lt;P&gt;&lt;A href="https://documentation.meraki.com/MS/Access_Control/Change_of_Authorization_with_RADIUS_(CoA)_on_MS_Switches#Use_Cases" target="_blank"&gt;Use Case&lt;/A&gt;&lt;STRONG&gt;&amp;nbsp;URL Redirect Walled Garden (Supported on MS210/225/250/350/410/420/425)&lt;/STRONG&gt;&lt;BR /&gt;By default, URL redirect is enabled&amp;nbsp;with CoA. &amp;nbsp;This can be used to redirect clients to a webpage for authentication. &amp;nbsp;Before authentication, the client will have access to all HTTP resources. &amp;nbsp;&lt;FONT color="#0000FF"&gt;&lt;EM&gt;The walled garden can be used to limit access to the web server only.&lt;/EM&gt;&lt;/FONT&gt; &amp;nbsp;This feature will only be enabled if one or more supported switches are in the network. &amp;nbsp;Configurations on this feature will be ignored by unsupported switches.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Jun 2019 05:56:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3882100#M471879</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2019-06-30T05:56:52Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3883303#M471880</link>
      <description>&lt;P&gt;Redirection for wireless guest is possible with meraki as ISE uses airespace ACL to apply the group policy for guest redirection. But in the case of wired switches in the documentation provided or in the reference links, there are no pointers or ways to create Named ACL for Wired Posture redirection. Please help.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Aravind.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2019 15:21:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3883303#M471880</guid>
      <dc:creator>aravikumar</dc:creator>
      <dc:date>2019-07-02T15:21:00Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3883327#M471881</link>
      <description>&lt;P&gt;Check my &lt;A href="https://community.cisco.com/t5/identity-services-engine-ise/ise-posture-call-home-list/m-p/3882100/highlight/true#M28135" target="_self"&gt;earlier response to this thread&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Please test it out yourself as the Meraki gears in our lab are not currently working.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2019 16:08:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3883327#M471881</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2019-07-02T16:08:52Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Posture Call Home List</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3883337#M471882</link>
      <description>Please reach out to meraki&lt;BR /&gt;</description>
      <pubDate>Tue, 02 Jul 2019 16:26:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-posture-call-home-list/m-p/3883337#M471882</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-07-02T16:26:59Z</dc:date>
    </item>
  </channel>
</rss>

