<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA with cisco ise integration and if it compatible or not in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480335#M527456</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;See &lt;A _jive_internal="true" href="https://community.cisco.com/docs/DOC-64012#jive_content_id_Cisco_Adaptive_Security_Appliance_ASA"&gt;Cisco Adaptive Security Appliance (ASA)&lt;/A&gt; in &lt;A _jive_internal="true" href="https://community.cisco.com/docs/DOC-64012"&gt;ISE Design &amp;amp; Integration Guides&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 23 Aug 2017 18:58:34 GMT</pubDate>
    <dc:creator>hslai</dc:creator>
    <dc:date>2017-08-23T18:58:34Z</dc:date>
    <item>
      <title>ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480332#M527448</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am looking that ASA is supported with Cisco ISE or no, In Cisco ISE compatibility matrix 2.2 I can find this only &lt;SPAN class="fontstyle0" style="font-size: 10pt;"&gt;Supported Cisco Remote Access&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;IMG alt="Capture.PNG" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/110720_Capture.PNG" style="height: 153px; width: 620px;" /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;I need to know if these models are supported or not &lt;/P&gt;&lt;P&gt;5520&lt;/P&gt;&lt;P&gt;5505&lt;/P&gt;&lt;P&gt;5525&lt;/P&gt;&lt;P&gt;5555&lt;/P&gt;&lt;P&gt;and if there is any IOS is recommend &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can I authenticate user who log in on ASA ?&lt;/P&gt;&lt;P&gt;can authorization be from ISE or local on ASA?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 18:36:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480332#M527448</guid>
      <dc:creator>engahmedsaied</dc:creator>
      <dc:date>2017-08-23T18:36:46Z</dc:date>
    </item>
    <item>
      <title>Re: ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480333#M527450</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, you can use ISE tacacs+ as AAA server to authenticate, authorize and account users&amp;nbsp; who log into the ASA CLI and / or ASDM. You can also failback to LOCAL username database on ASA. To my experience, ASA 9.x work with ISE 2.x. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 18:49:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480333#M527450</guid>
      <dc:creator>Ping Zhou</dc:creator>
      <dc:date>2017-08-23T18:49:56Z</dc:date>
    </item>
    <item>
      <title>Re: ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480334#M527453</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;if I have no device administration license on ISE, can I only authenticate admin user who login on ASA and take authorization local from ASA ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 18:57:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480334#M527453</guid>
      <dc:creator>engahmedsaied</dc:creator>
      <dc:date>2017-08-23T18:57:33Z</dc:date>
    </item>
    <item>
      <title>Re: ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480335#M527456</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;See &lt;A _jive_internal="true" href="https://community.cisco.com/docs/DOC-64012#jive_content_id_Cisco_Adaptive_Security_Appliance_ASA"&gt;Cisco Adaptive Security Appliance (ASA)&lt;/A&gt; in &lt;A _jive_internal="true" href="https://community.cisco.com/docs/DOC-64012"&gt;ISE Design &amp;amp; Integration Guides&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 18:58:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480335#M527456</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2017-08-23T18:58:34Z</dc:date>
    </item>
    <item>
      <title>Re: ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480336#M527459</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;RADIUS may allow some limited device admin capabilities. It's recommended to use T+. One deployment needs only one T+ license.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 19:02:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480336#M527459</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2017-08-23T19:02:01Z</dc:date>
    </item>
    <item>
      <title>Re: ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480337#M527462</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Agreed. Anything with tacacs, you need that single device Admin license. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if you want to try radius device Admin, using old school PAP-ASCII as the protoco and just Authorization with permit access, it should work, but donot think you can add any privileges and comman sets. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 19:07:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480337#M527462</guid>
      <dc:creator>Ping Zhou</dc:creator>
      <dc:date>2017-08-23T19:07:50Z</dc:date>
    </item>
    <item>
      <title>Re: ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480338#M527463</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;yes I think now about only authenticate user from cisco ISE and authorization be from ASA itself but how can I check if ASA model in post is supported or no ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 19:28:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480338#M527463</guid>
      <dc:creator>engahmedsaied</dc:creator>
      <dc:date>2017-08-23T19:28:08Z</dc:date>
    </item>
    <item>
      <title>Re: ASA with cisco ise integration and if it compatible or not</title>
      <link>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480339#M527466</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Device Admin via either RADIUS or TACACS+ is pretty plain old school PAP for ISE. I haven't found any cisco papers documwanting this compatibility. Perhaps cisco folks can give some direction here... &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would suggest you to set up LOCAL on ASA first, if it's successfu, then you add your ISE PSN to it. During this proces, check debug info on ISE live log and ASA to see the steps. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 23 Aug 2017 19:42:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/asa-with-cisco-ise-integration-and-if-it-compatible-or-not/m-p/3480339#M527466</guid>
      <dc:creator>Ping Zhou</dc:creator>
      <dc:date>2017-08-23T19:42:17Z</dc:date>
    </item>
  </channel>
</rss>

