<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Device Identification over the Internet using ISE in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4267015#M564560</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can collect values for your VPN users via Anyconnect ACIDex, but there are limited on ISE.&lt;/P&gt;&lt;P&gt;Check the following presentation&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.ciscolive.com/c/dam/r/ciscolive/apjc/docs/2019/pdf/BRKSEC-2725.pdf" target="_blank"&gt;https://www.ciscolive.com/c/dam/r/ciscolive/apjc/docs/2019/pdf/BRKSEC-2725.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 05 Jan 2021 13:23:27 GMT</pubDate>
    <dc:creator>Panos Bouras</dc:creator>
    <dc:date>2021-01-05T13:23:27Z</dc:date>
    <item>
      <title>Device Identification over the Internet using ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4266651#M564550</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;I had a series of questions come my way regarding the profiling of devices that communicates to our internal/DMZ network either over the Internet or VPN tunnels.&amp;nbsp; It is my understanding that ISE will only profile devices directly attached to our internal network as there are some configs that needs to be added to switches in order to ensure the necessary probes being used can profile the device appropriately.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Question:&lt;/STRONG&gt;&lt;/EM&gt; &lt;EM&gt;Is it possible to use ISE to also profile a device coming from an external network, such as the Internet or VPN tunnel, for the sole purpose of simply identifying (device type &amp;amp; IP address) that device for security purposes?&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My thinking is along the lines of how some Internet apps may use your device type to identify if you've ever logged into their service from that device before OR may send you a notification if a login was detected from a specific device that may be a security alert.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;&lt;P&gt;Terence&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jan 2021 20:06:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4266651#M564550</guid>
      <dc:creator>Terence Lockette</dc:creator>
      <dc:date>2021-01-04T20:06:14Z</dc:date>
    </item>
    <item>
      <title>Re: Device Identification over the Internet using ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4266878#M564557</link>
      <description>&lt;P&gt;all depends on the attributes that are being sent along with the authentication, so if vpn user is authenticated with ISE and the firewall sends the accounting, this accounting packets usually contains mdm-tlv attributes that can be used for profiling the endpoint&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jan 2021 09:08:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4266878#M564557</guid>
      <dc:creator>yalbikaw</dc:creator>
      <dc:date>2021-01-05T09:08:48Z</dc:date>
    </item>
    <item>
      <title>Re: Device Identification over the Internet using ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4267015#M564560</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can collect values for your VPN users via Anyconnect ACIDex, but there are limited on ISE.&lt;/P&gt;&lt;P&gt;Check the following presentation&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.ciscolive.com/c/dam/r/ciscolive/apjc/docs/2019/pdf/BRKSEC-2725.pdf" target="_blank"&gt;https://www.ciscolive.com/c/dam/r/ciscolive/apjc/docs/2019/pdf/BRKSEC-2725.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jan 2021 13:23:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4267015#M564560</guid>
      <dc:creator>Panos Bouras</dc:creator>
      <dc:date>2021-01-05T13:23:27Z</dc:date>
    </item>
    <item>
      <title>Re: Device Identification over the Internet using ISE</title>
      <link>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4267018#M564561</link>
      <description>&lt;P&gt;Thanks for your reply.&amp;nbsp; I should've been clearer in my original post.&amp;nbsp; I'm referring to external devices that do not belong to our network coming across an external network such as the Internet or IPsec VPNs.&amp;nbsp; For instance, a vendor has a VPN tunnel set up to communicate with our internal servers, can ISE be used to identify the device attempting to talk to our server?&amp;nbsp; Or, an employee using their personal device to connect to a server over the Internet in our DMZ.&amp;nbsp; Can ISE be used to identify this device?&lt;/P&gt;</description>
      <pubDate>Tue, 05 Jan 2021 13:25:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/device-identification-over-the-internet-using-ise/m-p/4267018#M564561</guid>
      <dc:creator>Terence Lockette</dc:creator>
      <dc:date>2021-01-05T13:25:44Z</dc:date>
    </item>
  </channel>
</rss>

