<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Access policy for MyDevices Portal in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315291#M566498</link>
    <description>&lt;P&gt;Thanks a lot for your answer.&amp;nbsp;It is regrettable to hear about such shortcomings in a program created for precisely these purposes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But how about my second question? Can I customize the Mydevice Portal for adding combo-box with select a Endpoint Identity Group?&lt;/P&gt;</description>
    <pubDate>Mon, 29 Mar 2021 04:57:11 GMT</pubDate>
    <dc:creator>vigogne</dc:creator>
    <dc:date>2021-03-29T04:57:11Z</dc:date>
    <item>
      <title>Access policy for MyDevices Portal</title>
      <link>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4314259#M566438</link>
      <description>&lt;P&gt;Tell me please. Is it is possible to create an access policy for the MyDevices portal to allow access only to a certain group in AD?&lt;BR /&gt;At the moment, I have done this way:&lt;/P&gt;&lt;P&gt;In the Identity Source Sequences at MyDevice_Portal_Sequence I left "Internal Users" Identity Source only. Then I added the Network Access User with the same name as in the AD Database and password type as AD Sequence.&lt;/P&gt;&lt;P&gt;It works, but it is very inconvenient and not flexible.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And second question. How can I modify MyDevices Portal for add in standard form combo-box with selecting endpoint group?&lt;/P&gt;</description>
      <pubDate>Fri, 26 Mar 2021 05:45:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4314259#M566438</guid>
      <dc:creator>vigogne</dc:creator>
      <dc:date>2021-03-26T05:45:04Z</dc:date>
    </item>
    <item>
      <title>Re: Access policy for MyDevices Portal</title>
      <link>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315057#M566484</link>
      <description>&lt;P&gt;Unfortunately you have stumbled upon an area that has frustrated many. As you found, the RBAC for the My devices portal is non existent, you map AD then everyone has access. This certainly is not an ideal situation for the vast majority of use cases. Compounding the issue, the portal is tied to a specific endpoint ID group, you need a portal per ID group you want to add endpoints in to. Due to this, it's almost always better to build an external portal leveraging the ERS APIs so you can do RBAC and endpoint ID group selction.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;If a portal per identity group doesn't deter you, then you can look at Craig's old guide on adding RBAC to the my devices portal.&amp;nbsp;Craig's document is old, and full of 1.3 screenshots, so it looks different, but it's all still valid.&amp;nbsp;&lt;BR /&gt;&lt;A href="https://community.cisco.com/t5/security-documents/ise-sponsor-amp-my-devices-authorization-on-secondary-attributes/ta-p/3641379" target="_blank"&gt;https://community.cisco.com/t5/security-documents/ise-sponsor-amp-my-devices-authorization-on-secondary-attributes/ta-p/3641379&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 28 Mar 2021 00:09:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315057#M566484</guid>
      <dc:creator>Damien Miller</dc:creator>
      <dc:date>2021-03-28T00:09:22Z</dc:date>
    </item>
    <item>
      <title>Re: Access policy for MyDevices Portal</title>
      <link>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315291#M566498</link>
      <description>&lt;P&gt;Thanks a lot for your answer.&amp;nbsp;It is regrettable to hear about such shortcomings in a program created for precisely these purposes.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But how about my second question? Can I customize the Mydevice Portal for adding combo-box with select a Endpoint Identity Group?&lt;/P&gt;</description>
      <pubDate>Mon, 29 Mar 2021 04:57:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315291#M566498</guid>
      <dc:creator>vigogne</dc:creator>
      <dc:date>2021-03-29T04:57:11Z</dc:date>
    </item>
    <item>
      <title>Re: Access policy for MyDevices Portal</title>
      <link>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315676#M566509</link>
      <description>&lt;P&gt;It is not possible to add an identity group selection to the built in my devices portal, you need a unique portal per ID group.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Mar 2021 19:54:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315676#M566509</guid>
      <dc:creator>Damien Miller</dc:creator>
      <dc:date>2021-03-29T19:54:28Z</dc:date>
    </item>
    <item>
      <title>Re: Access policy for MyDevices Portal</title>
      <link>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315915#M566513</link>
      <description>&lt;P&gt;Weird flex, but ok )&lt;/P&gt;</description>
      <pubDate>Tue, 30 Mar 2021 05:50:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/access-policy-for-mydevices-portal/m-p/4315915#M566513</guid>
      <dc:creator>vigogne</dc:creator>
      <dc:date>2021-03-30T05:50:44Z</dc:date>
    </item>
  </channel>
</rss>

