<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 3rd party Network Device Profiles in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497403#M521148</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are no network device profiles because Fortinet doesn’t do wired/wireless or VPN connectivity for the end users. You don’t add Fortinet devices to ISE.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are talking about profiling the network access devices just to see what is out there then make sure after ISE is up and running.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I still don’t see the use case and how it integrates with ISE.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For TACACs its fairly straightforward. You add the Network access device that needs to process device admin. There are no profiles to handle this. It should work as long as they follow the standards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If there are still problems you can work with the TAC as well for troubleshooting&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 02 Oct 2017 19:24:06 GMT</pubDate>
    <dc:creator>Jason Kunst</dc:creator>
    <dc:date>2017-10-02T19:24:06Z</dc:date>
    <item>
      <title>3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497400#M521145</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have a wide array of devices in my environment and was wondering if there are any Network Device Profiles for Fortinet and Palo Alto devices?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 18:54:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497400#M521145</guid>
      <dc:creator>zivanovichn</dc:creator>
      <dc:date>2017-10-02T18:54:30Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497401#M521146</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Network device profiles are used for wired, wireless and VPN use cases.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;https://communities.cisco.com/docs/DOC-64547&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The vendors you mention aren’t used for user connectivity to the network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Fortinet I believe is used as a firewall for perhaps internet connectivity and all that can be done is perhaps log guest traffic? There are community posts on that&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Palo Alto is another firewall but I don’t currently see any integration from them. This is also not a valid case. For example Checkpoint is able to use Trustsec SGT (Scalable Group Tags) to match policies shared via PXgrid.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Would be best to research what each device is used for and the possible integration behind that. And if you have further questions please reach out&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 19:02:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497401#M521146</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-10-02T19:02:29Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497402#M521147</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Jason, I am mainly interested in the Fortinet's because we are implementing an SD-WAN solution and the Fortinets will be passing some of that traffic.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also would like to have the profiles so that I would be able to properly classify the devices within ISE, we do our TACACS authentication and authorization through ISE and cant label those devices correctly right now.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Niko Zivanovich&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 19:09:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497402#M521147</guid>
      <dc:creator>zivanovichn</dc:creator>
      <dc:date>2017-10-02T19:09:47Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497403#M521148</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are no network device profiles because Fortinet doesn’t do wired/wireless or VPN connectivity for the end users. You don’t add Fortinet devices to ISE.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are talking about profiling the network access devices just to see what is out there then make sure after ISE is up and running.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I still don’t see the use case and how it integrates with ISE.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For TACACs its fairly straightforward. You add the Network access device that needs to process device admin. There are no profiles to handle this. It should work as long as they follow the standards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If there are still problems you can work with the TAC as well for troubleshooting&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 19:24:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497403#M521148</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-10-02T19:24:06Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497404#M521149</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Easier shown in the picture below, I will be adding the Fortinet Firewalls, switches, and controllers into ISE for the TACACS authentication. Currently I am only able to classify those devices as: Cisco, HP, Aruba, Brocade, and Ruckus; was hoping to add other Vendor device profiles so that I could classify my network devices correctly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/111754_pastedImage_0.png" style="max-width: 1200px; max-height: 900px;" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 19:34:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497404#M521149</guid>
      <dc:creator>zivanovichn</dc:creator>
      <dc:date>2017-10-02T19:34:20Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497405#M521150</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please follow the process here and work with the TAC&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;https://communities.cisco.com/docs/DOC-64547&lt;/P&gt;&lt;P&gt;Then please share&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 20:07:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497405#M521150</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-10-02T20:07:55Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497406#M521152</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For TACACS+, there is no special config needed for the NAD Profile.&amp;nbsp; If simply wish to have option to select a certain vendor, then suggest simply add new profile (give it a name, set vendor to "Other", enable TACACS+, and optionally set icon and description to specific vendor).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;/Craig&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Oct 2017 13:24:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/3497406#M521152</guid>
      <dc:creator>Craig Hyps</dc:creator>
      <dc:date>2017-10-03T13:24:07Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/4016584#M521157</link>
      <description>&lt;P&gt;Hi Jason,&lt;/P&gt;
&lt;P&gt;Do we have a Network Device Profile for Broadcom switches? If so, is there any documentation on the same that can be used to create the profile?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Sampath&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jan 2020 22:30:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/4016584#M521157</guid>
      <dc:creator>sampathss</dc:creator>
      <dc:date>2020-01-22T22:30:52Z</dc:date>
    </item>
    <item>
      <title>Re: 3rd party Network Device Profiles</title>
      <link>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/4020432#M521163</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/353481"&gt;@sampathss&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;Hi Jason,&lt;/P&gt;
&lt;P&gt;Do we have a Network Device Profile for Broadcom switches? If so, is there any documentation on the same that can be used to create the profile?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Sampath&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;unfortunately we don't have everything out there. I'd work with Broadcom to see what they need as well and please share if not already here&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-documents/ise-third-party-nad-profiles-and-configs/ta-p/3648719" target="_blank"&gt;https://community.cisco.com/t5/security-documents/ise-third-party-nad-profiles-and-configs/ta-p/3648719&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-documents/how-to-create-ise-network-access-device-profiles/ta-p/3631103" target="_blank"&gt;https://community.cisco.com/t5/security-documents/how-to-create-ise-network-access-device-profiles/ta-p/3631103&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jan 2020 18:40:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/3rd-party-network-device-profiles/m-p/4020432#M521163</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2020-01-29T18:40:00Z</dc:date>
    </item>
  </channel>
</rss>

