<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Windows 10 patch managment in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/windows-10-patch-managment/m-p/3442577#M520094</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As i haven't had the chance to test or try that myself, please advise if there are known issues in getting SCCM integration to work with ISE+ Anyconnect posture or the purpose of patch management (customer wants to make sure endpoint has the most up to date patches before it's allowed on the network).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Ahmed.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 07 Nov 2017 16:15:03 GMT</pubDate>
    <dc:creator>afahmy</dc:creator>
    <dc:date>2017-11-07T16:15:03Z</dc:date>
    <item>
      <title>Windows 10 patch managment</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-10-patch-managment/m-p/3442577#M520094</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As i haven't had the chance to test or try that myself, please advise if there are known issues in getting SCCM integration to work with ISE+ Anyconnect posture or the purpose of patch management (customer wants to make sure endpoint has the most up to date patches before it's allowed on the network).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Ahmed.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 07 Nov 2017 16:15:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-10-patch-managment/m-p/3442577#M520094</guid>
      <dc:creator>afahmy</dc:creator>
      <dc:date>2017-11-07T16:15:03Z</dc:date>
    </item>
    <item>
      <title>Re: Windows 10 patch managment</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-10-patch-managment/m-p/3442578#M520097</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Per direct communication, here is reference guide: &lt;A href="https://community.cisco.com/docs/DOC-64012"&gt;ISE Design &amp;amp;amp; Integration Guides&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You also noted that TAC case opened but concern was delay in seeing resolution, so this post does not provide much for anyone to go on other than "Any known issues".&amp;nbsp;&amp;nbsp; Per phone call, recommend:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Communicate delay in resolution with TAC Duty Manager&lt;/LI&gt;&lt;LI&gt;Review SCCM Integration Guide&lt;/LI&gt;&lt;LI&gt;ISE 2.3 adds some enhancements for backend Microsoft patch level checking with SCCM.&lt;/LI&gt;&lt;LI&gt;If specific question or issue, then detail that rather than general "any issues" to allow TMEs or other SMEs to provide direct feedback to specific issue.&amp;nbsp; Otherwise it is too vague.&amp;nbsp; &lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Goal of this community is not to be a TAC escalation forum so want to make sure that issues already in the hands of TAC are escalated through proper channels.&amp;nbsp; If looking for feedback on resolution or solicit experience, that is acceptable, but open queries like this likely will not achieve desired outcome.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 07 Nov 2017 17:26:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-10-patch-managment/m-p/3442578#M520097</guid>
      <dc:creator>Craig Hyps</dc:creator>
      <dc:date>2017-11-07T17:26:32Z</dc:date>
    </item>
    <item>
      <title>Re: Windows 10 patch managment</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-10-patch-managment/m-p/3442579#M520100</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ahmed,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In addition to what Craig said, you have to be very careful about this statement you made:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"&lt;SPAN style="color: #3d3d3d; font-family: arial; font-size: 12px;"&gt;customer wants to make sure endpoint has the most up to date patches before it's allowed on the network."&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3d3d3d; font-family: arial; font-size: 12px;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3d3d3d; font-family: arial; font-size: 12px;"&gt;Any time I see the statement like "Customer wants to block access before posture is known" I cringe a bit.&amp;nbsp; You need to have a clear understanding of when posture status is reported and what you will break if you are too restrictive in the posture unknown state.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 08 Nov 2017 14:35:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-10-patch-managment/m-p/3442579#M520100</guid>
      <dc:creator>paul</dc:creator>
      <dc:date>2017-11-08T14:35:50Z</dc:date>
    </item>
  </channel>
</rss>

