<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Modification of Self-Register Portal Workflow in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796940#M485418</link>
    <description>Check out this . you could do a modification perhaps. &lt;BR /&gt;&lt;A href="https://community.cisco.com/t5/security-documents/ise-guest-amp-web-authentication/ta-p/3657224#toc-hId--2096579123" target="_blank"&gt;https://community.cisco.com/t5/security-documents/ise-guest-amp-web-authentication/ta-p/3657224#toc-hId--2096579123&lt;/A&gt;&lt;BR /&gt;Linking one guest portal to another guest portal (ability to choose another portal)&lt;BR /&gt;ISE Hotspot portal with links to employee or vendor portals</description>
    <pubDate>Thu, 07 Feb 2019 15:55:19 GMT</pubDate>
    <dc:creator>Jason Kunst</dc:creator>
    <dc:date>2019-02-07T15:55:19Z</dc:date>
    <item>
      <title>Modification of Self-Register Portal Workflow</title>
      <link>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796617#M485413</link>
      <description>&lt;P&gt;Hi Cisco Community,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i've a question regarding to the guest portals strategy of the Cisco ISE. None of the existing workflows really fit our needs. We're a university with several locations and buildings. At the moment we provide a WLAN SSID on demand of the conference owner. This SSID is limited in time and location (we use AP Groups on our WLAN controller). All these steps are done manually. To take a step into future, we want to broadcast a single guest WLAN SSID all over our campus. To minimize the administrative work we want to use a self-register portal. As we want to broadcast the SSID everywhere, everyone would be able to register himself on our wlan. To prevent this, we think about something like a 'Conference Code'. A password which is different from conference to conference. This 'Conference Code' should be visible (printed on paper i.e.) on the locations of the conference.&lt;/P&gt;
&lt;P&gt;This conference code will be generated and distributed by our IT staff to the organization of the conference, which need to have access to the guest wlan.&lt;/P&gt;
&lt;P&gt;After the guest enters the conference code, he/she must go through the self-register portal procedure as it might be necessary to track guests in case of law violation.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I saw that it is possible the set a AUP password. But only in the HotSpot Mode, where no self-register process is linked.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Maybe someone of you have a clue to solve my problem.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you and best regards from Germany&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Florian&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Feb 2019 09:48:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796617#M485413</guid>
      <dc:creator>florian.hahner1</dc:creator>
      <dc:date>2019-02-07T09:48:17Z</dc:date>
    </item>
    <item>
      <title>Re: Modification of Self-Register Portal Workflow</title>
      <link>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796652#M485416</link>
      <description>&lt;P&gt;Ok. I found a first possible step to solution. You can set a register code at the self-service registration form settings.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2019-02-07 11_21_47-Window.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/29509iFE688E07FED7A73F/image-size/large?v=v2&amp;amp;px=999" role="button" title="2019-02-07 11_21_47-Window.png" alt="2019-02-07 11_21_47-Window.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Maybe i'm able to set to set the code via rest-api.&lt;/P&gt;</description>
      <pubDate>Thu, 07 Feb 2019 10:24:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796652#M485416</guid>
      <dc:creator>florian.hahner1</dc:creator>
      <dc:date>2019-02-07T10:24:30Z</dc:date>
    </item>
    <item>
      <title>Re: Modification of Self-Register Portal Workflow</title>
      <link>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796705#M485417</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/480885"&gt;@florian.hahner1&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Another slightly related option to your multi-factor Guest network, might be to use a Pre-Shared Key WLAN Profile instead of an Open SSID.&amp;nbsp; Since the user has to type in *something* anyway, why not make them type the PSK of the SSID in?&amp;nbsp; That has the positive side effect of encrypting the connection as well (PSK only known to people who physically see the key written down, and not the hacker in the car park)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Just a thought.&amp;nbsp; And that PSK can be localised per location, and per WLC in that location.&amp;nbsp; I don't know if WLC supports REST API (I doubt it) but it could be scripted via ssh commands.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once the user has typed in the PSK, they are redirected immediately to the self registration portal.&lt;/P&gt;
&lt;P&gt;Another benefit of this method is that you don't get hundreds of MAB auths on your Radius server, because the client has to associate to the SSID first before the MAB auth can be done.&amp;nbsp; It's a protection layer for your ISE platform too &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Feb 2019 11:32:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796705#M485417</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2019-02-07T11:32:10Z</dc:date>
    </item>
    <item>
      <title>Re: Modification of Self-Register Portal Workflow</title>
      <link>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796940#M485418</link>
      <description>Check out this . you could do a modification perhaps. &lt;BR /&gt;&lt;A href="https://community.cisco.com/t5/security-documents/ise-guest-amp-web-authentication/ta-p/3657224#toc-hId--2096579123" target="_blank"&gt;https://community.cisco.com/t5/security-documents/ise-guest-amp-web-authentication/ta-p/3657224#toc-hId--2096579123&lt;/A&gt;&lt;BR /&gt;Linking one guest portal to another guest portal (ability to choose another portal)&lt;BR /&gt;ISE Hotspot portal with links to employee or vendor portals</description>
      <pubDate>Thu, 07 Feb 2019 15:55:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796940#M485418</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-02-07T15:55:19Z</dc:date>
    </item>
    <item>
      <title>Re: Modification of Self-Register Portal Workflow</title>
      <link>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796959#M485561</link>
      <description>yes you can set via rest api, look at the tips tricks&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://community.cisco.com/t5/security-documents/ise-guest-amp-web-authentication/ta-p/3657224#toc-hId--1043955036" target="_blank"&gt;https://community.cisco.com/t5/security-documents/ise-guest-amp-web-authentication/ta-p/3657224#toc-hId--1043955036&lt;/A&gt;</description>
      <pubDate>Thu, 07 Feb 2019 16:07:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/modification-of-self-register-portal-workflow/m-p/3796959#M485561</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-02-07T16:07:58Z</dc:date>
    </item>
  </channel>
</rss>

