<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Endpoint Blacklist Policy in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192849#M564145</link>
    <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2020-12-03 at 08.45.38.png" style="width: 900px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/89781i6F6E4DC5BDF30931/image-dimensions/900x477?v=v2" width="900" height="477" role="button" title="Screen Shot 2020-12-03 at 08.45.38.png" alt="Screen Shot 2020-12-03 at 08.45.38.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;So this is just a test policy set and what not, i don't see anywhere to reference endpoint groups. Am i in the wrong place ?&lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
    <pubDate>Thu, 03 Dec 2020 15:48:22 GMT</pubDate>
    <dc:creator>itnetworking</dc:creator>
    <dc:date>2020-12-03T15:48:22Z</dc:date>
    <item>
      <title>Endpoint Blacklist Policy</title>
      <link>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192349#M564125</link>
      <description>&lt;P&gt;Hey all, I am trying to replace my currently WLC Blacklist policy of deny based on MAC Address with ISE.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My ISe also already does tacacs for network devices&lt;/P&gt;&lt;P&gt;I currently have 802.1x authentication against the Internal AD&lt;/P&gt;&lt;P&gt;and an endpoint identity group labeled "Blacklist"&lt;/P&gt;&lt;P&gt;with some test Macs.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My biggest issue i keep finding is that i am unable to reference that "Blacklist" Endpoint identity group anywhere in the policy configuration&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any help to a resource would be very helpful!&lt;/P&gt;</description>
      <pubDate>Wed, 02 Dec 2020 20:09:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192349#M564125</guid>
      <dc:creator>itnetworking</dc:creator>
      <dc:date>2020-12-02T20:09:22Z</dc:date>
    </item>
    <item>
      <title>Re: Endpoint Blacklist Policy</title>
      <link>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192376#M564127</link>
      <description>&lt;P&gt;You will/can reference endpoint identity groups in your authz policies for mab onboarding as a condition to match.&amp;nbsp; Try searching for the group using this condition: IdentityGroup-Name EQUALS &amp;lt;blacklist&amp;gt;.&amp;nbsp; HTH!&lt;/P&gt;</description>
      <pubDate>Wed, 02 Dec 2020 20:57:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192376#M564127</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2020-12-02T20:57:30Z</dc:date>
    </item>
    <item>
      <title>Re: Endpoint Blacklist Policy</title>
      <link>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192849#M564145</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2020-12-03 at 08.45.38.png" style="width: 900px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/89781i6F6E4DC5BDF30931/image-dimensions/900x477?v=v2" width="900" height="477" role="button" title="Screen Shot 2020-12-03 at 08.45.38.png" alt="Screen Shot 2020-12-03 at 08.45.38.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;So this is just a test policy set and what not, i don't see anywhere to reference endpoint groups. Am i in the wrong place ?&lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2020 15:48:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192849#M564145</guid>
      <dc:creator>itnetworking</dc:creator>
      <dc:date>2020-12-03T15:48:22Z</dc:date>
    </item>
    <item>
      <title>Re: Endpoint Blacklist Policy</title>
      <link>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192887#M564147</link>
      <description>&lt;P&gt;You are in the right place.&amp;nbsp; Click the '+' under your authorization policy that is highlighted blue in your screenshot.&amp;nbsp; Here is an example:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="ep_grp_condition.PNG" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/89787iEB6F3509CEA90BED/image-size/large?v=v2&amp;amp;px=999" role="button" title="ep_grp_condition.PNG" alt="ep_grp_condition.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; Then assign your respective Authz Profile and/or SGT if using trustsec.&amp;nbsp; HTH!&lt;/P&gt;</description>
      <pubDate>Thu, 03 Dec 2020 16:30:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/endpoint-blacklist-policy/m-p/4192887#M564147</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2020-12-03T16:30:57Z</dc:date>
    </item>
  </channel>
</rss>

