<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE Authorization Policy - Network Device Management in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-authorization-policy-network-device-management/m-p/4162799#M563189</link>
    <description>&lt;P&gt;Within authz policies you have the ability to utilize DEVICE:Device Type condition which would allow you to drive policy based on the type (owner/building/etc.).&amp;nbsp; Another condition you can utilize is Network Access: NetworkDeviceName.&amp;nbsp; That condition could be possible for your scenario.&amp;nbsp; For example: if all your switch names start with ABCDEF you could use this condition: Network Access: NetworkDeviceName STARTSWITH: ABCDEF.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 07 Oct 2020 13:28:28 GMT</pubDate>
    <dc:creator>Mike.Cifelli</dc:creator>
    <dc:date>2020-10-07T13:28:28Z</dc:date>
    <item>
      <title>ISE Authorization Policy - Network Device Management</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-authorization-policy-network-device-management/m-p/4162737#M563187</link>
      <description>&lt;P&gt;First of all, thank you in advance for reading my question!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've created a policy set, in which I've added a Network Management set to manage our network equipment.&amp;nbsp; I've added the devices to the Network devices.&amp;nbsp; Created the authentication and authorization policies.&amp;nbsp; It works great!&amp;nbsp; Here's my issue.&amp;nbsp; When I create the network devices, I add a location to each device, and then I've added that location to the "All Locations" group.&amp;nbsp; Is there a way(and I've already tried, but it's not working), where in the Authorization policy, I can add the "All Locations" option, so that I don't have to add each switch device IP into the authorization policy?&amp;nbsp; All I have to do is add the network device, set up its location, and add that location to the "All Locations" group, and that's it.&amp;nbsp; Just curious if that's even possible.&amp;nbsp; It would suck to have to add the switch to the Network devices, and then have to add the device IP to the authorization policy.&amp;nbsp; Thanks again!&lt;/P&gt;</description>
      <pubDate>Wed, 07 Oct 2020 12:35:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-authorization-policy-network-device-management/m-p/4162737#M563187</guid>
      <dc:creator>Dan Man</dc:creator>
      <dc:date>2020-10-07T12:35:08Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Authorization Policy - Network Device Management</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-authorization-policy-network-device-management/m-p/4162799#M563189</link>
      <description>&lt;P&gt;Within authz policies you have the ability to utilize DEVICE:Device Type condition which would allow you to drive policy based on the type (owner/building/etc.).&amp;nbsp; Another condition you can utilize is Network Access: NetworkDeviceName.&amp;nbsp; That condition could be possible for your scenario.&amp;nbsp; For example: if all your switch names start with ABCDEF you could use this condition: Network Access: NetworkDeviceName STARTSWITH: ABCDEF.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;HTH!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Oct 2020 13:28:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-authorization-policy-network-device-management/m-p/4162799#M563189</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2020-10-07T13:28:28Z</dc:date>
    </item>
    <item>
      <title>Re: ISE Authorization Policy - Network Device Management</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-authorization-policy-network-device-management/m-p/4166162#M563293</link>
      <description>&lt;P&gt;Mike, thank you!&amp;nbsp; This worked fantastically for me!&amp;nbsp; I appreciate it!&lt;/P&gt;</description>
      <pubDate>Tue, 13 Oct 2020 20:11:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-authorization-policy-network-device-management/m-p/4166162#M563293</guid>
      <dc:creator>Dan Man</dc:creator>
      <dc:date>2020-10-13T20:11:16Z</dc:date>
    </item>
  </channel>
</rss>

