<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: cisco ise 2.4 command auth report question in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872449#M472305</link>
    <description>&lt;P&gt;thank you for all the help.&lt;/P&gt;&lt;P&gt;Ill see if i can automate this with a script to pull from repository, convert to text file, then send email. I was really hoping to have a real-time report sent via email but im thinking this might meet the teams requirements.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;</description>
    <pubDate>Thu, 13 Jun 2019 13:48:35 GMT</pubDate>
    <dc:creator>baker82</dc:creator>
    <dc:date>2019-06-13T13:48:35Z</dc:date>
    <item>
      <title>cisco ise 2.4 command auth report question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872107#M472300</link>
      <description>&lt;P&gt;hello,&lt;/P&gt;&lt;P&gt;i would like to know if Cisco ISE can send live reporting of all command auths on the devices that is being managed with ISE.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have attempted to use the Admin &amp;gt; Settings &amp;gt; Alarm Settings &amp;gt; Alarm Notifications but im not sure which alarm would provide this tacacs-command auth.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I was able to use the reporting feature to send these to my local repository but I am needing the report to be detailed via email.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks in advance &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jun 2019 01:48:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872107#M472300</guid>
      <dc:creator>baker82</dc:creator>
      <dc:date>2019-06-13T01:48:35Z</dc:date>
    </item>
    <item>
      <title>Re: cisco ise 2.4 command auth report question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872184#M472302</link>
      <description>&lt;P&gt;By design, if you use TACACS+ for device admin, then the TACACS+ Accounting can contain the commands that are executed. It would be one accounting record per command authorized.&amp;nbsp; You can also see that in the SYSLOGs.&amp;nbsp; Not sure if you want this kind of data sent to you as individual emails (if I understood your initial comments).&lt;/P&gt;
&lt;P&gt;If you choose to use Radius for device admin, then you don't get the command accounting.&amp;nbsp; You will get Radius Accounting that contains bytes in/out, but not the commands itself.&amp;nbsp; TACACS is the way forward!&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jun 2019 06:15:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872184#M472302</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2019-06-13T06:15:00Z</dc:date>
    </item>
    <item>
      <title>Re: cisco ise 2.4 command auth report question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872251#M472303</link>
      <description>You can't generate an alarm for command change in ISE. You can do this from&lt;BR /&gt;syslog server by generating an alarm if syslog message matched.&lt;BR /&gt;</description>
      <pubDate>Thu, 13 Jun 2019 07:43:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872251#M472303</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2019-06-13T07:43:06Z</dc:date>
    </item>
    <item>
      <title>Re: cisco ise 2.4 command auth report question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872348#M472304</link>
      <description>&lt;P&gt;ISE will send a notification email when report is complete but not the detailed report itself.&lt;/P&gt;
&lt;P&gt;I suggest contacting the sales team for feature enhancement or provide feedback option within ISE GUI (Click on the gear icon in the upper right corner).&lt;/P&gt;
&lt;P&gt;You could try using FTP/SFTP to schedule transfers from repository to email.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jun 2019 11:12:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872348#M472304</guid>
      <dc:creator>ldanny</dc:creator>
      <dc:date>2019-06-13T11:12:16Z</dc:date>
    </item>
    <item>
      <title>Re: cisco ise 2.4 command auth report question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872449#M472305</link>
      <description>&lt;P&gt;thank you for all the help.&lt;/P&gt;&lt;P&gt;Ill see if i can automate this with a script to pull from repository, convert to text file, then send email. I was really hoping to have a real-time report sent via email but im thinking this might meet the teams requirements.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Michael&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jun 2019 13:48:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-2-4-command-auth-report-question/m-p/3872449#M472305</guid>
      <dc:creator>baker82</dc:creator>
      <dc:date>2019-06-13T13:48:35Z</dc:date>
    </item>
  </channel>
</rss>

