<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ISE in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827488#M474419</link>
    <description>If you have ISE use it for everything! ☺&lt;BR /&gt;</description>
    <pubDate>Wed, 27 Mar 2019 20:50:33 GMT</pubDate>
    <dc:creator>Jason Kunst</dc:creator>
    <dc:date>2019-03-27T20:50:33Z</dc:date>
    <item>
      <title>Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827460#M474417</link>
      <description>&lt;P&gt;I have cisco ISE 2.2 in my network for the authentication. For the wireless network i have number of standalone APs connected to the access layer switch directly and because of this, it consumes more licensing. Can i remove the dot1x from the interface where the APs are connected? Because the wireless infrastructure is secured by clear pass. So only authenticated users can get the access via wireless infrastructure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So is it fine to remove the dot1x configuration from the interfaces where the APs are connected?&lt;/P&gt;&lt;P&gt;Is there any cisco recommended practice for this kind of issue?&lt;/P&gt;&lt;P&gt;Is there any cisco provided document for this kind of situation?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Mar 2019 20:09:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827460#M474417</guid>
      <dc:creator>jm.virtual01</dc:creator>
      <dc:date>2019-03-27T20:09:17Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827487#M474418</link>
      <description>You can do anything you want, the world is your oyster as they say.&lt;BR /&gt;&lt;BR /&gt;That said, the goal with wired dot1x is to secure your access layer and protect potential entry points on to your network. If you remove dot1x from the AP ports, then they won't consume any license, but you would probably be best to secure the port some other way then.&lt;BR /&gt;&lt;BR /&gt;The reccomendation as a general security practice, secure all your access ports, my customers tend to do that with ISE still.</description>
      <pubDate>Wed, 27 Mar 2019 20:45:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827487#M474418</guid>
      <dc:creator>Damien Miller</dc:creator>
      <dc:date>2019-03-27T20:45:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827488#M474419</link>
      <description>If you have ISE use it for everything! ☺&lt;BR /&gt;</description>
      <pubDate>Wed, 27 Mar 2019 20:50:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827488#M474419</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-03-27T20:50:33Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827628#M474420</link>
      <description>&lt;P&gt;if i have a licences issues and the wireless infrastructure is secured by clear pass then what is the best practice ?&lt;/P&gt;</description>
      <pubDate>Wed, 27 Mar 2019 23:54:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise/m-p/3827628#M474420</guid>
      <dc:creator>jm.virtual01</dc:creator>
      <dc:date>2019-03-27T23:54:43Z</dc:date>
    </item>
  </channel>
</rss>

