<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Calling logical profiles in ISE 2.2 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4038761#M558504</link>
    <description>You can call the logical profiled group under 'other conditions'.  For example it would look like this:&lt;BR /&gt;Rule 1: If ANY and Windows All and Endpoints:LogicalProfile EQUALS Cameras then &amp;lt;result&amp;gt;&lt;BR /&gt;HTH!</description>
    <pubDate>Mon, 02 Mar 2020 18:21:30 GMT</pubDate>
    <dc:creator>Mike.Cifelli</dc:creator>
    <dc:date>2020-03-02T18:21:30Z</dc:date>
    <item>
      <title>Calling logical profiles in ISE 2.2</title>
      <link>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4038506#M558491</link>
      <description>&lt;P&gt;&lt;FONT face="verdana,geneva" size="2"&gt;Hi Experts,&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;I am using ISE 2.2.0.470 with patch 16&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;I have created a few profiling policies to segregate laptops, and then called them in logical profile as corporate laptops.&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;Using this logical profile I want to run a few posture policies only for laptops.&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;But, now I am stuck, as I am not able to call this logical profile inside my posture policy.&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;I can see that there is something called as NAC_Profiler, is that similar to endpoint groups or logical profiles?&lt;/FONT&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Cisco ISE - NAC_Profiler.png" style="width: 648px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/68263i6FDAF4F664738042/image-dimensions/648x373?v=v2" width="648" height="373" role="button" title="Cisco ISE - NAC_Profiler.png" alt="Cisco ISE - NAC_Profiler.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;If calling logical profiles is not possible then, is it possible to move the endpoint groups that are created by profiling policies to under some other parent groups, such as Registered endpoints, as I can see that is populating in posture policy here:&lt;/FONT&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Cisco ISE - Registred endpoints.png" style="width: 630px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/68264i0ECEFC96E29A6A58/image-dimensions/630x598?v=v2" width="630" height="598" role="button" title="Cisco ISE - Registred endpoints.png" alt="Cisco ISE - Registred endpoints.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;Is this something which is limited by the design or there is any workaround that I should be looking at?&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 02 Mar 2020 12:32:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4038506#M558491</guid>
      <dc:creator>dgaikwad</dc:creator>
      <dc:date>2020-03-02T12:32:02Z</dc:date>
    </item>
    <item>
      <title>Re: Calling logical profiles in ISE 2.2</title>
      <link>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4038761#M558504</link>
      <description>You can call the logical profiled group under 'other conditions'.  For example it would look like this:&lt;BR /&gt;Rule 1: If ANY and Windows All and Endpoints:LogicalProfile EQUALS Cameras then &amp;lt;result&amp;gt;&lt;BR /&gt;HTH!</description>
      <pubDate>Mon, 02 Mar 2020 18:21:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4038761#M558504</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2020-03-02T18:21:30Z</dc:date>
    </item>
    <item>
      <title>Re: Calling logical profiles in ISE 2.2</title>
      <link>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4039029#M558523</link>
      <description>&lt;P&gt;&lt;FONT face="verdana,geneva" size="2"&gt;I am under the other conditions in posture polices, but the endpoints is not listed here...&lt;/FONT&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Cisco ISE - Other Conditions.png" style="width: 804px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/68326i110E169E4B9728E5/image-dimensions/804x356?v=v2" width="804" height="356" role="button" title="Cisco ISE - Other Conditions.png" alt="Cisco ISE - Other Conditions.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;FONT face="verdana,geneva" size="2"&gt;As here the endpoints is not visible under it, where as its listed under authorization policies.&lt;BR /&gt;&lt;/FONT&gt;&lt;FONT face="verdana,geneva" size="2"&gt;Now the question is, is this something that is supported in this version of ISE?&lt;/FONT&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 03 Mar 2020 05:47:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4039029#M558523</guid>
      <dc:creator>dgaikwad</dc:creator>
      <dc:date>2020-03-03T05:47:32Z</dc:date>
    </item>
    <item>
      <title>Re: Calling logical profiles in ISE 2.2</title>
      <link>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4039303#M558531</link>
      <description>Go to Policy-&amp;gt;Policy Elements-&amp;gt;Conditions-&amp;gt;Dictionary Simple Condition.  Add new Condition that looks like this:&lt;BR /&gt;Name = &amp;lt;name&amp;gt;&lt;BR /&gt;Attribute = Endpoints:LogicalProfile&lt;BR /&gt;Operator = EQUALS&lt;BR /&gt;Value = &amp;lt;logical group&amp;gt;&lt;BR /&gt;Then go back to posture policies-&amp;gt;Other conditions (select)-&amp;gt;Existing Simple condition-&amp;gt;&amp;lt;your created logical group condition&amp;gt;&lt;BR /&gt;HTH!</description>
      <pubDate>Tue, 03 Mar 2020 13:57:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4039303#M558531</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2020-03-03T13:57:59Z</dc:date>
    </item>
    <item>
      <title>Re: Calling logical profiles in ISE 2.2</title>
      <link>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4039708#M558548</link>
      <description>&lt;P&gt;ISE 2.2 does not support those matching conditions in Posture or Client Provisioning Policies. The ability to match on these conditions was not added until ISE 2.3+ as per the &lt;A href="https://www.cisco.com/c/en/us/td/docs/security/ise/2-3/release_notes/ise23_rn.html#pgfId-759194" target="_self"&gt;Release Notes&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 03 Mar 2020 22:23:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/calling-logical-profiles-in-ise-2-2/m-p/4039708#M558548</guid>
      <dc:creator>Greg Gibbs</dc:creator>
      <dc:date>2020-03-03T22:23:48Z</dc:date>
    </item>
  </channel>
</rss>

