<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PAN in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3716150#M529700</link>
    <description>Recommend you ask PAN (assume you mean Palo Alto networks?) it’s up to them to integrate &lt;BR /&gt;</description>
    <pubDate>Mon, 01 Oct 2018 10:44:21 GMT</pubDate>
    <dc:creator>Jason Kunst</dc:creator>
    <dc:date>2018-10-01T10:44:21Z</dc:date>
    <item>
      <title>PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569179#M529693</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="color: #343537; font-family: -apple-system, 'Segoe UI', sans-serif; font-size: 14px; font-style: normal; font-weight: 300; text-align: left; text-indent: 0px;"&gt;Hi Team,&lt;/P&gt;&lt;P style="color: #343537; font-family: -apple-system, 'Segoe UI', sans-serif; font-size: 14px; font-style: normal; font-weight: 300; text-align: left; text-indent: 0px;"&gt;&lt;/P&gt;&lt;P style="color: #343537; font-family: -apple-system, 'Segoe UI', sans-serif; font-size: 14px; font-style: normal; font-weight: 300; text-align: left; text-indent: 0px;"&gt;I understand that we have a list of ecosystem partner for pxGrid and PAN is not listed there. Do we have any case study or any partner for reference who has done the ISE integration with PAN for Rapid Threat Containment…or any document which talks about the integration of Cisco ISE with Palo Alto Firewall for RTC.&lt;/P&gt;&lt;P style="margin: 1em 0 0; color: #343537; font-family: -apple-system, 'Segoe UI', sans-serif; font-size: 14px; font-style: normal; font-weight: 300; text-align: left; text-indent: 0px;"&gt;Though I could find a link (&lt;A href="http://www.cisco.com/c/en/us/products/security/pxgrid.html" style="color: #0ab7d7;"&gt;http://www.cisco.com/c/en/us/products/security/pxgrid.html&lt;/A&gt;&lt;SPAN class="Apple-converted-space"&gt; &lt;/SPAN&gt;) where it mention “With pxGrid, any connected technology can instruct the Cisco Identity Services Engine (ISE) to contain a threat," but was not able to find the some specific information related to Palo Alto Firewall. Any caveats???&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 May 2017 02:09:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569179#M529693</guid>
      <dc:creator>ankaushi</dc:creator>
      <dc:date>2017-05-12T02:09:17Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569180#M529694</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anshul,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We haven't tested PAN with ISE for RTC.&amp;nbsp; My understanding is the integration is limited to ISE sending syslog information for PAN to ingest.&amp;nbsp; Unfortunately, we don't have any documentation that covers how to set this up.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;-Tim&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 May 2017 17:38:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569180#M529694</guid>
      <dc:creator>Timothy Abbott</dc:creator>
      <dc:date>2017-05-12T17:38:02Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569181#M529695</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is no current support. Please discuss your use cases with our product management teams.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 May 2017 17:38:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569181#M529695</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2017-05-12T17:38:38Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569182#M529696</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can ISE BU test this PAN with ISE integration ASAP and publish some example documentation? This will certainly help partners to position ISE for all identity related management.&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a customer who use PAN for URL filtering. They enable PAN SSL Decryption for URL Filtering. All Group membership are out of active directory. They're trying to &lt;SPAN style="font-size: 10pt;"&gt;fetch group data via SAML on ADFS. PAN can only use LDAP for Group mapping for User-Identification. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can we position ISE pxGrid to make this user-id mapping work for PAN URL filtering? &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 15 Nov 2017 16:13:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569182#M529696</guid>
      <dc:creator>Kevin Xiong</dc:creator>
      <dc:date>2017-11-15T16:13:17Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569183#M529697</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Again as &lt;A href="https://community.cisco.com//u1/38995"&gt;hslai&lt;/A&gt; stated please reach out to ISE product management team thru the sales channel with your use case. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 15 Nov 2017 16:20:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3569183#M529697</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-11-15T16:20:07Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3716024#M529698</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any update about posibility of having PAN "talking" to our ISE via PxGRID?&lt;/P&gt;
&lt;P&gt;I have customer who concerns this issue.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rgds,&lt;/P&gt;
&lt;P&gt;Minh&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 01 Oct 2018 07:44:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3716024#M529698</guid>
      <dc:creator>tminh</dc:creator>
      <dc:date>2018-10-01T07:44:56Z</dc:date>
    </item>
    <item>
      <title>Re: PAN</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3716150#M529700</link>
      <description>Recommend you ask PAN (assume you mean Palo Alto networks?) it’s up to them to integrate &lt;BR /&gt;</description>
      <pubDate>Mon, 01 Oct 2018 10:44:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3716150#M529700</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2018-10-01T10:44:21Z</dc:date>
    </item>
    <item>
      <title>Re: PAN</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3717086#M529702</link>
      <description>&lt;P&gt;Thanks for your advice.&lt;/P&gt;
&lt;P&gt;Asking PaloAlto SE, I got the following answer:&lt;/P&gt;
&lt;P&gt;- PA FW could use PxGRID to send to ISE quarantine request&lt;/P&gt;
&lt;P&gt;- PA FW could get the user information from ISE indirectly with the help of a free tool MineMeld + PxGRID&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Minh&lt;/P&gt;</description>
      <pubDate>Tue, 02 Oct 2018 06:36:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3717086#M529702</guid>
      <dc:creator>tminh</dc:creator>
      <dc:date>2018-10-02T06:36:08Z</dc:date>
    </item>
    <item>
      <title>Re: PAN</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3717293#M529705</link>
      <description>&amp;gt;From our integration explorers. there is no current integration, please reach out to PAN to adopt Open pxGrid.&lt;BR /&gt;</description>
      <pubDate>Tue, 02 Oct 2018 11:43:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3717293#M529705</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2018-10-02T11:43:51Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3837463#M529707</link>
      <description>&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have the same problem with the Fortigate FW. Does anyone know how to integrate Fortigate FW with the Cisco ISE for RTC?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Waqas&lt;/P&gt;</description>
      <pubDate>Fri, 12 Apr 2019 08:20:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3837463#M529707</guid>
      <dc:creator>waqas1</dc:creator>
      <dc:date>2019-04-12T08:20:26Z</dc:date>
    </item>
    <item>
      <title>Re: PAN</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3837576#M529708</link>
      <description>Same guidance, if not listed under &lt;A href="http://cs.co/ise-guides" target="_blank"&gt;http://cs.co/ise-guides&lt;/A&gt; then we likely don’t have integration. You would need to have customer request feature from vendor to integrate with our product, it’s open platform sdk&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://developer.cisco.com/site/pxgrid/" target="_blank"&gt;https://developer.cisco.com/site/pxgrid/&lt;/A&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 12 Apr 2019 12:33:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/3837576#M529708</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2019-04-12T12:33:06Z</dc:date>
    </item>
    <item>
      <title>Re: PAN</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/4001070#M529711</link>
      <description>&lt;P&gt;Panorama Plugin for Cisco TrustSec....&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Maybe in the near future we could get Rapid Threat Containment working! Was a dream thought before with PA but looking like reality soon!&lt;/P&gt;</description>
      <pubDate>Thu, 19 Dec 2019 06:18:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/4001070#M529711</guid>
      <dc:creator>nidamen</dc:creator>
      <dc:date>2019-12-19T06:18:25Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/4053533#M559207</link>
      <description>&lt;P&gt;Hi Guys,&lt;BR /&gt;&lt;SPAN&gt;I have read a lot of articles about Palo Alto Cisco ISE and now I understand that I can do this through MineMeld.&lt;BR /&gt;A pxgrid configuration is required on the Cisco ISE side.&lt;BR /&gt;I will prepare a document of interest soon.&lt;BR /&gt;&lt;/SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="MineMeld.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/70052iC76EF2AEFC35AD0A/image-size/large?v=v2&amp;amp;px=999" role="button" title="MineMeld.png" alt="MineMeld.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Mar 2020 10:37:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/4053533#M559207</guid>
      <dc:creator>Emre Ozel</dc:creator>
      <dc:date>2020-03-27T10:37:47Z</dc:date>
    </item>
    <item>
      <title>Re: PAN &amp; ISE for Rapid Threat Containment</title>
      <link>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/4317569#M566575</link>
      <description>&lt;P&gt;Emre did you ever get around to doing a Document which covered this?&lt;/P&gt;</description>
      <pubDate>Thu, 01 Apr 2021 18:30:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/pan-ise-for-rapid-threat-containment/m-p/4317569#M566575</guid>
      <dc:creator>nidamen</dc:creator>
      <dc:date>2021-04-01T18:30:19Z</dc:date>
    </item>
  </channel>
</rss>

