<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE 2.7 P3 fails to connect to MS Azure Intune in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-2-7-p3-fails-to-connect-to-ms-azure-intune/m-p/4408258#M567540</link>
    <description>&lt;P&gt;Confirm you have traffic with MDM server via port 443.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regarding certificates,&amp;nbsp;&lt;SPAN&gt;check the&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="ph b"&gt;Trust for authentication within ISE&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;and&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="ph b"&gt;Trust for authentication of Cisco Services&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You should be able to see the events on ise-psc.log file.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Otherwise, you better open a TAC case for further assistance.&lt;/P&gt;</description>
    <pubDate>Tue, 25 May 2021 12:23:07 GMT</pubDate>
    <dc:creator>lrojaslo</dc:creator>
    <dc:date>2021-05-25T12:23:07Z</dc:date>
    <item>
      <title>ISE 2.7 P3 fails to connect to MS Azure Intune</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-p3-fails-to-connect-to-ms-azure-intune/m-p/4408150#M567536</link>
      <description>&lt;P&gt;Hi, folks.&lt;/P&gt;&lt;P&gt;I am trying to connect ISE 2.7 P3 to a MS Intune MDM tenant, sadly without success ....&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have imported the necessary certificates (DigiCert and MS Chains) into ISE trusted certs, exported the&lt;/P&gt;&lt;P&gt;ISE-cert to be imported into Intune by the cloud-guys ... I was also told that all configurations (APP, rights etc.) were&lt;/P&gt;&lt;P&gt;done correctly on the Intune-side .... but connection still fails.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Connection Failed: 403:Forbidden: the MDM server is not reachable&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a detailed description of what happens when the "test connection" button is pressed in one of ISEs log-files ??&lt;/P&gt;&lt;P&gt;If so, which one might that be ?? &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I also could not find a detailed description on which services the imported certificates should be trusted for ... any ideas ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Rgs&lt;/P&gt;&lt;P&gt;Frank&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 May 2021 08:07:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-p3-fails-to-connect-to-ms-azure-intune/m-p/4408150#M567536</guid>
      <dc:creator>Frank Lothar Weber</dc:creator>
      <dc:date>2021-05-25T08:07:05Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.7 P3 fails to connect to MS Azure Intune</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-p3-fails-to-connect-to-ms-azure-intune/m-p/4408258#M567540</link>
      <description>&lt;P&gt;Confirm you have traffic with MDM server via port 443.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regarding certificates,&amp;nbsp;&lt;SPAN&gt;check the&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="ph b"&gt;Trust for authentication within ISE&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;and&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="ph b"&gt;Trust for authentication of Cisco Services&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You should be able to see the events on ise-psc.log file.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Otherwise, you better open a TAC case for further assistance.&lt;/P&gt;</description>
      <pubDate>Tue, 25 May 2021 12:23:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-p3-fails-to-connect-to-ms-azure-intune/m-p/4408258#M567540</guid>
      <dc:creator>lrojaslo</dc:creator>
      <dc:date>2021-05-25T12:23:07Z</dc:date>
    </item>
    <item>
      <title>Re: ISE 2.7 P3 fails to connect to MS Azure Intune</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-2-7-p3-fails-to-connect-to-ms-azure-intune/m-p/4413711#M567719</link>
      <description>&lt;P&gt;Try adding the &lt;A href="https://www.digicert.com/kb/digicert-root-certificates.htm" target="_blank"&gt;DigiCert Global Root G2&lt;/A&gt; certificate to the ISE Trusted Certificate store?&lt;/P&gt;
&lt;P&gt;Microsoft updated their Graph API cert in ~September 2020 to use the new cert so that may be it.&lt;/P&gt;</description>
      <pubDate>Sun, 06 Jun 2021 20:30:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-2-7-p3-fails-to-connect-to-ms-azure-intune/m-p/4413711#M567719</guid>
      <dc:creator>thomas</dc:creator>
      <dc:date>2021-06-06T20:30:52Z</dc:date>
    </item>
  </channel>
</rss>

