<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE AD Integration in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740777#M488878</link>
    <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="staff.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22419i883AEC7D6B574B92/image-size/large?v=v2&amp;amp;px=999" role="button" title="staff.PNG" alt="staff.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="student.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22420i09F7E407098953D7/image-size/large?v=v2&amp;amp;px=999" role="button" title="student.PNG" alt="student.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 07 Nov 2018 04:12:51 GMT</pubDate>
    <dc:creator>Indula1</dc:creator>
    <dc:date>2018-11-07T04:12:51Z</dc:date>
    <item>
      <title>ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3736209#M488869</link>
      <description>&lt;P&gt;There a login problem with ISE with Wifi in our organization .We are using Cisco WLC and integrated with ISE. The issue is any ssid can access in any Active Directory Group Users and also Active Directory integrated properly in ISE. What is the reason and how to solve.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Indula&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 31 Oct 2018 06:49:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3736209#M488869</guid>
      <dc:creator>Indula1</dc:creator>
      <dc:date>2018-10-31T06:49:23Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3736213#M488870</link>
      <description>&lt;HR /&gt;
&lt;P&gt;Hi , explain more detailed what happen and what you want to do.&lt;/P&gt;
&lt;P&gt;Share with us some screenshot of configuration on ISE and in WLC.&lt;/P&gt;
&lt;P&gt;What version of ISE you use ,be more detailed please.&lt;/P&gt;</description>
      <pubDate>Wed, 31 Oct 2018 06:58:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3736213#M488870</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-10-31T06:58:32Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3736871#M488871</link>
      <description>&lt;P&gt;Adding to what &lt;SPAN class=""&gt;&lt;A id="link_15" class="lia-link-navigation lia-page-link lia-user-name-link" href="https://community.cisco.com/t5/user/viewprofilepage/user-id/266505" target="_self"&gt;ognyan.totev&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;suggested, please check ISE RADIUS Live Logs for the authentication attempts. On WLC, use debug commands, such as "debug client ..." to see the info from WLC prospective. Also, consult&amp;nbsp;&lt;SPAN&gt;&lt;A href="https://community.cisco.com/t5/wireless-mobility-blogs/wireless-lan-controller-best-practices/ba-p/3103454" target="_blank"&gt;&lt;STRONG&gt;&lt;I&gt;Wireless LAN Controller Best Practices - Cisco Community&lt;/I&gt;&lt;/STRONG&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 31 Oct 2018 21:25:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3736871#M488871</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2018-10-31T21:25:09Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740084#M488872</link>
      <description>&lt;P&gt;ISE version is 2.1.0&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ISE1.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22211i471595D4FA8AF820/image-size/large?v=v2&amp;amp;px=999" role="button" title="ISE1.PNG" alt="ISE1.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ISE2.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22212i327BA6463550EC8B/image-size/large?v=v2&amp;amp;px=999" role="button" title="ISE2.PNG" alt="ISE2.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="wlc.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22213i0E7CB04BB6C18814/image-size/large?v=v2&amp;amp;px=999" role="button" title="wlc.PNG" alt="wlc.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Nov 2018 13:59:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740084#M488872</guid>
      <dc:creator>Indula1</dc:creator>
      <dc:date>2018-11-06T13:59:01Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740115#M488873</link>
      <description>&lt;P&gt;The only screen shot we need to see is your Policy Set that you have configured for each SSID.&amp;nbsp; You should have specific policy sets configured for each SSID and the authorization section should control exactly who can connect to that SSID.&amp;nbsp; My guess is you are using the Cisco default policy set (which should be the first thing you disable) that allows everything on.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Nov 2018 14:13:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740115#M488873</guid>
      <dc:creator>paul</dc:creator>
      <dc:date>2018-11-06T14:13:26Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740128#M488874</link>
      <description>&lt;P&gt;This is the policy set in ISE&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="policy.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22226i3C049E9C61B713E4/image-size/large?v=v2&amp;amp;px=999" role="button" title="policy.PNG" alt="policy.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Nov 2018 14:21:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740128#M488874</guid>
      <dc:creator>Indula1</dc:creator>
      <dc:date>2018-11-06T14:21:55Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740134#M488875</link>
      <description>&lt;P&gt;As i see there you have 2 ssid ( staff and students)&lt;/P&gt;
&lt;P&gt;What show in radius live logs ?&lt;/P&gt;</description>
      <pubDate>Tue, 06 Nov 2018 14:27:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740134#M488875</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-11-06T14:27:40Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740136#M488876</link>
      <description>&lt;P&gt;We need to see the authorization rules.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Nov 2018 14:28:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740136#M488876</guid>
      <dc:creator>paul</dc:creator>
      <dc:date>2018-11-06T14:28:00Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740777#M488878</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="staff.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22419i883AEC7D6B574B92/image-size/large?v=v2&amp;amp;px=999" role="button" title="staff.PNG" alt="staff.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="student.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22420i09F7E407098953D7/image-size/large?v=v2&amp;amp;px=999" role="button" title="student.PNG" alt="student.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Nov 2018 04:12:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740777#M488878</guid>
      <dc:creator>Indula1</dc:creator>
      <dc:date>2018-11-07T04:12:51Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740780#M488880</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;
&lt;P&gt;are you have radius live logs when they try to connect ?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Nov 2018 04:17:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740780#M488880</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-11-07T04:17:12Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740792#M488882</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="live logs.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/22428iAF914CA712B713A3/image-size/large?v=v2&amp;amp;px=999" role="button" title="live logs.PNG" alt="live logs.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Nov 2018 04:49:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740792#M488882</guid>
      <dc:creator>Indula1</dc:creator>
      <dc:date>2018-11-07T04:49:55Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740801#M488884</link>
      <description>&lt;P&gt;As i saw above ,they match correct Authorization profiles ,what you allow in this profiles. You must define Air Acl in the WLC and use it in Ise&lt;/P&gt;</description>
      <pubDate>Wed, 07 Nov 2018 05:21:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740801#M488884</guid>
      <dc:creator>ognyan.totev</dc:creator>
      <dc:date>2018-11-07T05:21:53Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740998#M488885</link>
      <description>If your question is about how you can limit the rules to one specific SSID so that people logging into other SSIDs do not hit this rule, you can add an attribute to the current condition to check the RADIUS:Called-Station-Id contains &amp;lt;SSID name&amp;gt; . In the WLC make sure you set the called station ID attribute being sent is AP-Mac-Address:SSID under the RADIUS server authentication settings. If you need detailed instructions, let me know.</description>
      <pubDate>Wed, 07 Nov 2018 11:12:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3740998#M488885</guid>
      <dc:creator>Surendra</dc:creator>
      <dc:date>2018-11-07T11:12:23Z</dc:date>
    </item>
    <item>
      <title>Re: ISE AD Integration</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3743716#M488886</link>
      <description>&lt;P&gt;How can i define Air ACL in the WLC and how to use it in ISE&lt;/P&gt;</description>
      <pubDate>Mon, 12 Nov 2018 05:48:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-ad-integration/m-p/3743716#M488886</guid>
      <dc:creator>Indula1</dc:creator>
      <dc:date>2018-11-12T05:48:20Z</dc:date>
    </item>
  </channel>
</rss>

