<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ISE Deployment in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise-deployment/m-p/3330236#M551740</link>
    <description>&lt;P&gt;Dear All, I have a a question regarding ISE deployment.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is it possible to have in the same network the following features all enabled;&lt;/P&gt;
&lt;P&gt;1.RADIUS AAA, including 802.1x, MAC Authentication Bypass Done&lt;BR /&gt;&lt;BR /&gt;2.&amp;nbsp;&amp;nbsp; &amp;nbsp;Web authentication (local, central, device registration) &lt;BR /&gt;&lt;BR /&gt;3.&amp;nbsp;&amp;nbsp; &amp;nbsp;MACsec &lt;BR /&gt;&lt;BR /&gt;4.&amp;nbsp;&amp;nbsp; &amp;nbsp;SSO &lt;BR /&gt;&lt;BR /&gt;5.&amp;nbsp;&amp;nbsp; &amp;nbsp;Guest portal and sponsor services &lt;BR /&gt;&lt;BR /&gt;6.&amp;nbsp;&amp;nbsp; &amp;nbsp;Representational state transfer (monitoring) APIs &lt;BR /&gt;&lt;BR /&gt;7.&amp;nbsp;&amp;nbsp; &amp;nbsp;External RESTful services (CRUD)-capable APIs &lt;BR /&gt;&lt;BR /&gt;8.&amp;nbsp;&amp;nbsp; &amp;nbsp;Security group tagging &lt;BR /&gt;9.&amp;nbsp;&amp;nbsp; &amp;nbsp;PassiveID (Cisco Subscribers) &lt;BR /&gt;&lt;BR /&gt;10.&amp;nbsp;&amp;nbsp; &amp;nbsp;Passive ID (Non-Cisco Subscribers) &lt;BR /&gt;&lt;BR /&gt;11.&amp;nbsp;&amp;nbsp; &amp;nbsp;Profiling &lt;BR /&gt;&lt;BR /&gt;12.&amp;nbsp;&amp;nbsp; &amp;nbsp;Profiler feed service &lt;BR /&gt;&lt;BR /&gt;13.&amp;nbsp;&amp;nbsp; &amp;nbsp;Device registration (My Devices portal) and provisioning for Bring Your Own Device (BYOD) &lt;BR /&gt;&lt;BR /&gt;14.&amp;nbsp;&amp;nbsp; &amp;nbsp;Context sharing pxGrid &lt;BR /&gt;&lt;BR /&gt;15.&amp;nbsp;&amp;nbsp; &amp;nbsp;Endpoint Protection Services&lt;BR /&gt;&lt;BR /&gt;16.&amp;nbsp;&amp;nbsp; &amp;nbsp;TrustSec – ACI Integration &lt;BR /&gt;&lt;BR /&gt;17.&amp;nbsp;&amp;nbsp; &amp;nbsp;Rapid Threat Containment (RTC) (using ANC and pxGrid) &lt;BR /&gt;&lt;BR /&gt;18.&amp;nbsp;&amp;nbsp; &amp;nbsp;Posture (endpoint compliance and remediation)&lt;BR /&gt;&lt;BR /&gt;19.&amp;nbsp;&amp;nbsp; &amp;nbsp;Enterprise Mobility Management and Mobile Device&amp;nbsp; Management (EMM and MDM) integration &lt;BR /&gt;&lt;BR /&gt;20.&amp;nbsp;&amp;nbsp; &amp;nbsp;Threat Centric NAC &amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;21.&amp;nbsp;&amp;nbsp; &amp;nbsp;Wired access control &lt;BR /&gt;&lt;BR /&gt;22.&amp;nbsp;&amp;nbsp; &amp;nbsp;Device Administration (TACACS+)&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Or are some of these feature mutually exclusive?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 18:45:23 GMT</pubDate>
    <dc:creator>OBINNA EMESORONYE</dc:creator>
    <dc:date>2020-02-21T18:45:23Z</dc:date>
    <item>
      <title>Cisco ISE Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-deployment/m-p/3330236#M551740</link>
      <description>&lt;P&gt;Dear All, I have a a question regarding ISE deployment.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is it possible to have in the same network the following features all enabled;&lt;/P&gt;
&lt;P&gt;1.RADIUS AAA, including 802.1x, MAC Authentication Bypass Done&lt;BR /&gt;&lt;BR /&gt;2.&amp;nbsp;&amp;nbsp; &amp;nbsp;Web authentication (local, central, device registration) &lt;BR /&gt;&lt;BR /&gt;3.&amp;nbsp;&amp;nbsp; &amp;nbsp;MACsec &lt;BR /&gt;&lt;BR /&gt;4.&amp;nbsp;&amp;nbsp; &amp;nbsp;SSO &lt;BR /&gt;&lt;BR /&gt;5.&amp;nbsp;&amp;nbsp; &amp;nbsp;Guest portal and sponsor services &lt;BR /&gt;&lt;BR /&gt;6.&amp;nbsp;&amp;nbsp; &amp;nbsp;Representational state transfer (monitoring) APIs &lt;BR /&gt;&lt;BR /&gt;7.&amp;nbsp;&amp;nbsp; &amp;nbsp;External RESTful services (CRUD)-capable APIs &lt;BR /&gt;&lt;BR /&gt;8.&amp;nbsp;&amp;nbsp; &amp;nbsp;Security group tagging &lt;BR /&gt;9.&amp;nbsp;&amp;nbsp; &amp;nbsp;PassiveID (Cisco Subscribers) &lt;BR /&gt;&lt;BR /&gt;10.&amp;nbsp;&amp;nbsp; &amp;nbsp;Passive ID (Non-Cisco Subscribers) &lt;BR /&gt;&lt;BR /&gt;11.&amp;nbsp;&amp;nbsp; &amp;nbsp;Profiling &lt;BR /&gt;&lt;BR /&gt;12.&amp;nbsp;&amp;nbsp; &amp;nbsp;Profiler feed service &lt;BR /&gt;&lt;BR /&gt;13.&amp;nbsp;&amp;nbsp; &amp;nbsp;Device registration (My Devices portal) and provisioning for Bring Your Own Device (BYOD) &lt;BR /&gt;&lt;BR /&gt;14.&amp;nbsp;&amp;nbsp; &amp;nbsp;Context sharing pxGrid &lt;BR /&gt;&lt;BR /&gt;15.&amp;nbsp;&amp;nbsp; &amp;nbsp;Endpoint Protection Services&lt;BR /&gt;&lt;BR /&gt;16.&amp;nbsp;&amp;nbsp; &amp;nbsp;TrustSec – ACI Integration &lt;BR /&gt;&lt;BR /&gt;17.&amp;nbsp;&amp;nbsp; &amp;nbsp;Rapid Threat Containment (RTC) (using ANC and pxGrid) &lt;BR /&gt;&lt;BR /&gt;18.&amp;nbsp;&amp;nbsp; &amp;nbsp;Posture (endpoint compliance and remediation)&lt;BR /&gt;&lt;BR /&gt;19.&amp;nbsp;&amp;nbsp; &amp;nbsp;Enterprise Mobility Management and Mobile Device&amp;nbsp; Management (EMM and MDM) integration &lt;BR /&gt;&lt;BR /&gt;20.&amp;nbsp;&amp;nbsp; &amp;nbsp;Threat Centric NAC &amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;21.&amp;nbsp;&amp;nbsp; &amp;nbsp;Wired access control &lt;BR /&gt;&lt;BR /&gt;22.&amp;nbsp;&amp;nbsp; &amp;nbsp;Device Administration (TACACS+)&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Or are some of these feature mutually exclusive?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:45:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-deployment/m-p/3330236#M551740</guid>
      <dc:creator>OBINNA EMESORONYE</dc:creator>
      <dc:date>2020-02-21T18:45:23Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-deployment/m-p/3330259#M551772</link>
      <description>All these features are supported in ISE as you know. The question do you&lt;BR /&gt;need all of them at the same time.&lt;BR /&gt;&lt;BR /&gt;For example due you need PxGrid while you are using REST APIs. Similarly,&lt;BR /&gt;do you need ACI while you are using REST API or vice versa.&lt;BR /&gt;&lt;BR /&gt;Also, keep in mind that the more services you put in the node, the bigger&lt;BR /&gt;the size and higher the risk of bugs. If you need all of them, then you&lt;BR /&gt;need to start thinking about building nodes with specific roles which is&lt;BR /&gt;cisco best practice in large deployments.&lt;BR /&gt;</description>
      <pubDate>Tue, 13 Feb 2018 17:42:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-deployment/m-p/3330259#M551772</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-02-13T17:42:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Deployment</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-deployment/m-p/3330266#M551796</link>
      <description>&lt;P&gt;Thanks for your prompt response Mohammed and for bringing to mine best practice of having a multi-node setup which makes a lot of sense.&lt;/P&gt;
&lt;P&gt;I am particularly interested in the combination of MACSec, SGT and Posture assessment for the same users. Are they all possible for the same user or mutually exclusive?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Tue, 13 Feb 2018 17:56:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-deployment/m-p/3330266#M551796</guid>
      <dc:creator>OBINNA EMESORONYE</dc:creator>
      <dc:date>2018-02-13T17:56:32Z</dc:date>
    </item>
  </channel>
</rss>

