<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE 2.4 profiling in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-2-4-profiling/m-p/3785965#M486003</link>
    <description>Hi,&lt;BR /&gt;&lt;BR /&gt;Yes, you can enable profiling before dot1x which is called open-mode. I&lt;BR /&gt;suggest to configure DHCP probes, Radius Probes, SNMP Probes, and AD Probes&lt;BR /&gt;if possible and you are using AD. This should provide good start.&lt;BR /&gt;&lt;BR /&gt;Note that you need to configure dhcp relay pointing to ise and radius&lt;BR /&gt;server as ise.&lt;BR /&gt;</description>
    <pubDate>Wed, 23 Jan 2019 10:51:46 GMT</pubDate>
    <dc:creator>Mohammed al Baqari</dc:creator>
    <dc:date>2019-01-23T10:51:46Z</dc:date>
    <item>
      <title>ISE 2.4 profiling</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-4-profiling/m-p/3785951#M485998</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am trying to configure profiling using Cisco ISE 2.4 to find out the devices connected to my switch interfaces before configuring them for 802.1x authentication.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cisco ISE profiling has lots of probes listed, but my query is :&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Is it possible to enable only profiling first without configuring the switch ports for 802.1x authentication? Can i enable all global configuration related to RADIUS &amp;amp; probes and gather information?&lt;/P&gt;
&lt;P&gt;2. If yes, which probes would help me gather the connect device's hardware information?&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jan 2019 10:20:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-4-profiling/m-p/3785951#M485998</guid>
      <dc:creator>mgr</dc:creator>
      <dc:date>2019-01-23T10:20:03Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.4 profiling</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-4-profiling/m-p/3785965#M486003</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;Yes, you can enable profiling before dot1x which is called open-mode. I&lt;BR /&gt;suggest to configure DHCP probes, Radius Probes, SNMP Probes, and AD Probes&lt;BR /&gt;if possible and you are using AD. This should provide good start.&lt;BR /&gt;&lt;BR /&gt;Note that you need to configure dhcp relay pointing to ise and radius&lt;BR /&gt;server as ise.&lt;BR /&gt;</description>
      <pubDate>Wed, 23 Jan 2019 10:51:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-4-profiling/m-p/3785965#M486003</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2019-01-23T10:51:46Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.4 profiling</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-4-profiling/m-p/3786002#M486007</link>
      <description>Recommend also looking into using device sensor on Cisco gear. Makes all that information was packaged and sent to ise via radius packets.  Relying on manual probes likes dhcp helper and snmp isn’t as seamless as this method &lt;BR /&gt;&lt;BR /&gt;Remember ise requires a valid radius session for it to work correctly &lt;BR /&gt;&lt;BR /&gt;Start with the ise profiling guide available under &lt;A href="http://cs.co/ise-guides" target="_blank"&gt;http://cs.co/ise-guides&lt;/A&gt; &lt;BR /&gt;</description>
      <pubDate>Wed, 23 Jan 2019 12:08:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-4-profiling/m-p/3786002#M486007</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-01-23T12:08:46Z</dc:date>
    </item>
  </channel>
</rss>

