<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE for securing VDI and Laptop user environment in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457971#M519538</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sure Jason! Will lab it up.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 28 Nov 2017 16:25:36 GMT</pubDate>
    <dc:creator>p.s.arun2020</dc:creator>
    <dc:date>2017-11-28T16:25:36Z</dc:date>
    <item>
      <title>ISE for securing VDI and Laptop user environment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457967#M519528</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have a customer requirement where they have VDI as well as laptop users who connect to random ports. Please advise what is the best way to securely deploy ISE in such an environment. I was thinking of having MAB for VDI and dot1X for laptop users and Also was wondering if we can have easyconnect for vdi and dot1x for laptop users. please advise.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 26 Nov 2017 09:44:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457967#M519528</guid>
      <dc:creator>p.s.arun2020</dc:creator>
      <dc:date>2017-11-26T09:44:07Z</dc:date>
    </item>
    <item>
      <title>Re: ISE for securing VDI and Laptop user environment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457968#M519529</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Arun,&lt;/P&gt;&lt;P&gt;I dont think there is really a straight answer here as different types of methods can be used , however keep in mind easyconnect relies on kerebos authentications.&lt;/P&gt;&lt;P&gt;An example for MAB would be to Whitelist or Blacklist based on Profiles.&lt;/P&gt;&lt;P&gt;Dot1x needs a bit more "fine tuning" if Certs are being used and Network Device configurations , but is considered one of the most secured methods.&lt;/P&gt;&lt;P&gt;If your laptops are windows based then easyconnect could be a more simpler solution .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Danny&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 26 Nov 2017 13:12:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457968#M519529</guid>
      <dc:creator>ldanny</dc:creator>
      <dc:date>2017-11-26T13:12:53Z</dc:date>
    </item>
    <item>
      <title>Re: ISE for securing VDI and Laptop user environment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457969#M519532</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This should work fine&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I’m not quite sure how your VDI use case will work, if the vdi client machine doesn’t support Dot1x but it does login to the domain so that IP address of local client is mapped to a domain user then that might work as well&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please lab it up&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Nov 2017 12:30:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457969#M519532</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-11-27T12:30:51Z</dc:date>
    </item>
    <item>
      <title>Re: ISE for securing VDI and Laptop user environment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457970#M519534</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Danny for your response! will try your suggestions. Was wondering if you have any use case for VDI thin client users.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Nov 2017 04:50:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457970#M519534</guid>
      <dc:creator>p.s.arun2020</dc:creator>
      <dc:date>2017-11-28T04:50:52Z</dc:date>
    </item>
    <item>
      <title>Re: ISE for securing VDI and Laptop user environment</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457971#M519538</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sure Jason! Will lab it up.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 28 Nov 2017 16:25:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-for-securing-vdi-and-laptop-user-environment/m-p/3457971#M519538</guid>
      <dc:creator>p.s.arun2020</dc:creator>
      <dc:date>2017-11-28T16:25:36Z</dc:date>
    </item>
  </channel>
</rss>

