<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Use cisco-av-pair with database query. in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3789207#M486094</link>
    <description>It is being validated against a condition in an authorization rule. Any machine with AntConnect has a UID which is randomly generated. In my opinion it is reliable.&lt;BR /&gt;</description>
    <pubDate>Mon, 28 Jan 2019 08:45:20 GMT</pubDate>
    <dc:creator>rhobab</dc:creator>
    <dc:date>2019-01-28T08:45:20Z</dc:date>
    <item>
      <title>Use cisco-av-pair with database query.</title>
      <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3784176#M486061</link>
      <description>&lt;P&gt;We currently are validating the computers that access the network by the uid in the cisco-av-pair. For this we have conditions to validate the uid. While this worked fine with a few computers connecting via AnyConnect the amount of machines has increased greatly and the conditions have become unmanageable.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have been looking for a way to validate the uid against a database at the time of authentication / authorization. We would insert the known uids into a database. The idea being to authenticate the user against the Active Directory and validate the uid against the database at the time of connection.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Does anyone know of a way to do this?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Victor&lt;/P&gt;</description>
      <pubDate>Mon, 21 Jan 2019 11:27:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3784176#M486061</guid>
      <dc:creator>rhobab</dc:creator>
      <dc:date>2019-01-21T11:27:10Z</dc:date>
    </item>
    <item>
      <title>Re: Use cisco-av-pair with database query.</title>
      <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3785548#M486064</link>
      <description>&lt;P&gt;Remote access or 802.1X ?&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jan 2019 22:24:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3785548#M486064</guid>
      <dc:creator>Peter Koltl</dc:creator>
      <dc:date>2019-01-22T22:24:09Z</dc:date>
    </item>
    <item>
      <title>Re: Use cisco-av-pair with database query.</title>
      <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3785574#M486067</link>
      <description>&lt;P&gt;Remote access.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jan 2019 23:03:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3785574#M486067</guid>
      <dc:creator>rhobab</dc:creator>
      <dc:date>2019-01-22T23:03:07Z</dc:date>
    </item>
    <item>
      <title>Re: Use cisco-av-pair with database query.</title>
      <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3786388#M486074</link>
      <description>When you said “We currently are validating the computers that access the network by the uid in the cisco-av-pair”, May I know where this UID is configured and how you are validating it on the ISE ? perhaps a screenshot would help to understand your current setup better before providing any suggestions.&lt;BR /&gt;</description>
      <pubDate>Wed, 23 Jan 2019 20:54:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3786388#M486074</guid>
      <dc:creator>Surendra</dc:creator>
      <dc:date>2019-01-23T20:54:18Z</dc:date>
    </item>
    <item>
      <title>Re: Use cisco-av-pair with database query.</title>
      <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3787167#M486079</link>
      <description>As far as I know the uid is automatically generated when you install AnyConnect on the computer.  It appears in the ISE logs as mdm-tlv-device-uid.&lt;BR /&gt;&lt;BR /&gt;[cid:image002.png@01D4B3DD.ED261FB0]&lt;BR /&gt;</description>
      <pubDate>Thu, 24 Jan 2019 12:08:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3787167#M486079</guid>
      <dc:creator>rhobab</dc:creator>
      <dc:date>2019-01-24T12:08:57Z</dc:date>
    </item>
    <item>
      <title>Re: Use cisco-av-pair with database query.</title>
      <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3787522#M486085</link>
      <description>If the UID is generated when you install AnyConnect on a machine, may i know what are you validating it against? Wouldn't any machine with AnyConnect have a UID in that case and kind of unreliable?</description>
      <pubDate>Thu, 24 Jan 2019 19:21:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3787522#M486085</guid>
      <dc:creator>Surendra</dc:creator>
      <dc:date>2019-01-24T19:21:31Z</dc:date>
    </item>
    <item>
      <title>Re: Use cisco-av-pair with database query.</title>
      <link>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3789207#M486094</link>
      <description>It is being validated against a condition in an authorization rule. Any machine with AntConnect has a UID which is randomly generated. In my opinion it is reliable.&lt;BR /&gt;</description>
      <pubDate>Mon, 28 Jan 2019 08:45:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/use-cisco-av-pair-with-database-query/m-p/3789207#M486094</guid>
      <dc:creator>rhobab</dc:creator>
      <dc:date>2019-01-28T08:45:20Z</dc:date>
    </item>
  </channel>
</rss>

