<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE 2.2 guest features....&amp;quot;Supported with internal &amp; AD/LDAP email address&amp;quot; in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601340#M530203</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Jason,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there email validation if it is a self-registration flow?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Guest user completes the form but fills in an invalid email of the Person being visited. This flow doesn't require approval, but there is still a required email field of the Person being visited. Is this email validated against AD/LDAP?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The customer is considering enabling the self-registration flow with no approval required, but doesn't want any person to be sitting in parking lot within RF range of the Guest SSID and able to complete the self-registration process with a bogus email address. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 13 Apr 2017 02:01:48 GMT</pubDate>
    <dc:creator>bechong</dc:creator>
    <dc:date>2017-04-13T02:01:48Z</dc:date>
    <item>
      <title>ISE 2.2 guest features...."Supported with internal &amp; AD/LDAP email address"</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601338#M530194</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-size: 11pt;"&gt;In the slide below, what does “Supported with internal &amp;amp; AD/LDAP email addresses? Does this mean the email of the Person being visited will be verified against AD/LDAP? So Guest cannot simply enter &lt;A href="mailto:JohnDoe@XYZ.com" style="color: #954f72; text-decoration: underline;"&gt;JohnDoe@XYZ.com&lt;/A&gt; if they implement the Self-Registration workflow?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 11pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 11pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 11pt;"&gt;&lt;IMG alt="ISE2.2 guest.png" class="image-1 jive-image" src="/legacyfs/online/fusion/106238_ISE2.2 guest.png" style="height: 336px; width: 620px;" /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Apr 2017 19:31:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601338#M530194</guid>
      <dc:creator>bechong</dc:creator>
      <dc:date>2017-04-12T19:31:55Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.2 guest features...."Supported with internal &amp; AD/LDAP email address"</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601339#M530199</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This means when you enable single click sponsor approval it will validate that the person being visited email address belongs to a valid sponsor&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This flow will only work for those sponsors in active directory LDAP or internal use your account it will not work for the SAML&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Apr 2017 20:12:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601339#M530199</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-04-12T20:12:20Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.2 guest features...."Supported with internal &amp; AD/LDAP email address"</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601340#M530203</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Jason,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there email validation if it is a self-registration flow?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Guest user completes the form but fills in an invalid email of the Person being visited. This flow doesn't require approval, but there is still a required email field of the Person being visited. Is this email validated against AD/LDAP?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The customer is considering enabling the self-registration flow with no approval required, but doesn't want any person to be sitting in parking lot within RF range of the Guest SSID and able to complete the self-registration process with a bogus email address. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Apr 2017 02:01:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601340#M530203</guid>
      <dc:creator>bechong</dc:creator>
      <dc:date>2017-04-13T02:01:48Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.2 guest features...."Supported with internal &amp; AD/LDAP email address"</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601341#M530206</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;NO there is no lookup of the person being visited&amp;nbsp; less using single click&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;frankly I don't see the value as someone could easily find a company email address unless it was limited to a select few accounts even then it's better to use approval for that&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;instead why not use the self registration page access code to protect the portal?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if customer insist on having directory lookup with approval then please work offline with me by sending customer name as we have it on a list of features &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 13 Apr 2017 11:24:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-2-guest-features-quot-supported-with-internal-ad-ldap/m-p/3601341#M530206</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2017-04-13T11:24:34Z</dc:date>
    </item>
  </channel>
</rss>

