<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Marvin, I will definitely in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760862#M54419</link>
    <description>&lt;P&gt;Marvin, I will definitely take a look at the presentation (Slide 109).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your help.&amp;nbsp; Greatly appreciated !! I will keep you posted.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Tony&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Aug 2015 00:01:36 GMT</pubDate>
    <dc:creator>tonyp8581</dc:creator>
    <dc:date>2015-08-21T00:01:36Z</dc:date>
    <item>
      <title>Identify type of users</title>
      <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760856#M54408</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm am using a portal which an AD user or guest user can log in.&amp;nbsp; I'm trying to identify who is login in so I can assign Internet only to a Guest user and Full network access to an AD users.&amp;nbsp; I'm having some difficulty figuring&amp;nbsp;out this part.&lt;/P&gt;&lt;P&gt;Has anybody ever done that ? BTW, I'm using ISEv1.3.&lt;/P&gt;&lt;P&gt;Thanks !&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 05:58:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760856#M54408</guid>
      <dc:creator>tonyp8581</dc:creator>
      <dc:date>2019-03-11T05:58:43Z</dc:date>
    </item>
    <item>
      <title>This is one of the most</title>
      <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760857#M54409</link>
      <description>&lt;P&gt;This is one of the most common ways to use ISE.&lt;/P&gt;&lt;P&gt;How you implement it depends on whether you are talking about wired vs. wireless and whether you&amp;nbsp;are wanting to use strictly Central Web Authentication (usually not recommended since it is usually better to use native supplicant or AnyConnect supplicant for your AD users).&lt;/P&gt;</description>
      <pubDate>Sat, 15 Aug 2015 14:01:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760857#M54409</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-08-15T14:01:54Z</dc:date>
    </item>
    <item>
      <title>Hi Marvin,It's a wired</title>
      <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760858#M54411</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;&lt;P&gt;It's&amp;nbsp;a wired deployment.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm aware that 802.1x would be alot easier for me, but these users are consultant.&amp;nbsp; Their supplicant is not configured, but they have been issued an AD account.&amp;nbsp; This is why I need&amp;nbsp;the cwa feature.&amp;nbsp; With some trial and error, I was able to identify both users.&amp;nbsp; Guest and Consultant with the same portal.&lt;/P&gt;&lt;P&gt;Unfortunately,&amp;nbsp;I have reached another issue.&amp;nbsp; Always using the same portal, I am trying to identify&amp;nbsp;the consultant computer to a corporate computer.&amp;nbsp; The reason why I'm asking is because I want the Web agent to launch if it's a AD account and no Web agent with Guest account. I noticed&amp;nbsp; the client provisioning is controlled through the Portal. Therefore,&amp;nbsp;if I can identify the computer, I would be able to redirect to different portal.&amp;nbsp; Hence.&amp;nbsp;controlling the web agent.&lt;/P&gt;&lt;P&gt;I&amp;nbsp;hope my explanationt was clear enough.&lt;/P&gt;&lt;P&gt;Thanks !&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Tony&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Aug 2015 22:01:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760858#M54411</guid>
      <dc:creator>tonyp8581</dc:creator>
      <dc:date>2015-08-17T22:01:18Z</dc:date>
    </item>
    <item>
      <title>When a consultant logs in and</title>
      <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760859#M54412</link>
      <description>&lt;P&gt;When a consultant logs in and authenticates with their AD account, you can check group membership and have AuthZ result (web agent or no web agent) chosen according to group membership of authenticated user (AuthC result).&lt;/P&gt;</description>
      <pubDate>Tue, 18 Aug 2015 01:00:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760859#M54412</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-08-18T01:00:29Z</dc:date>
    </item>
    <item>
      <title>Hi Marvin,  I haven't had the</title>
      <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760860#M54414</link>
      <description>&lt;P&gt;Hi Marvin,&amp;nbsp; I haven't had the chance to try your suggestion.&amp;nbsp; Maybe my setup is wrong, but to use a group membership check, the consultant has to be logged in.&amp;nbsp; But in my case, I'm pushing the portal prior&amp;nbsp;to the consultant logging in. (see&amp;nbsp;authz.rtf).&amp;nbsp; So I have the same portal for the consultant and the guest, and it's in the portal configuration I can check the Web agent(see PortalConfig.rtf).&lt;/P&gt;&lt;P&gt;Like I said in the beginning maybe I'm going about the wrong way.&amp;nbsp; I will definitely&amp;nbsp;explore your suggestion.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Tony&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Aug 2015 21:59:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760860#M54414</guid>
      <dc:creator>tonyp8581</dc:creator>
      <dc:date>2015-08-20T21:59:37Z</dc:date>
    </item>
    <item>
      <title>Tony,Have a look at slides</title>
      <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760861#M54417</link>
      <description>&lt;P&gt;Tony,&lt;/P&gt;&lt;P&gt;Have a look at slides 109 onward in the &lt;A href="https://www.ciscolive.com/online/connect/sessionDetail.ww?SESSION_ID=83715&amp;amp;backBtn=true"&gt;presentation BRKSEC-3697 from Cisco Live&lt;/A&gt;. I believe it shows something along the lines of what you want - the AuthZ can force a CoA after authenticating the user.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Aug 2015 23:24:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760861#M54417</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-08-20T23:24:43Z</dc:date>
    </item>
    <item>
      <title>Marvin, I will definitely</title>
      <link>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760862#M54419</link>
      <description>&lt;P&gt;Marvin, I will definitely take a look at the presentation (Slide 109).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your help.&amp;nbsp; Greatly appreciated !! I will keep you posted.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Tony&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Aug 2015 00:01:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/identify-type-of-users/m-p/2760862#M54419</guid>
      <dc:creator>tonyp8581</dc:creator>
      <dc:date>2015-08-21T00:01:36Z</dc:date>
    </item>
  </channel>
</rss>

