<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Profiling for a certain OUI not working in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479376#M570144</link>
    <description>&lt;P&gt;Rewrite your Rule to use EndPointPolicy instead of IdentityGroup.&lt;/P&gt;&lt;P&gt;According to the ISE Detail log the Device has the IdentityGroup: Profiled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 04 Oct 2021 12:35:21 GMT</pubDate>
    <dc:creator>Oliver Laue</dc:creator>
    <dc:date>2021-10-04T12:35:21Z</dc:date>
    <item>
      <title>Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4477777#M570064</link>
      <description>&lt;P&gt;HI Guys,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Very new to ISE, so much I don't get yet (inc terminology), but I'm working on it, anyway&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Needed to configured to profiles for 2 different OUI's (not the same ID group), 1 for Building Management systems and 1 for door access controllers.&lt;/P&gt;&lt;P&gt;I started on the BMS devices first and got them to work, so when a new BMS devices came up it profiled it correctly.&lt;/P&gt;&lt;P&gt;Using the lessons learnt from getting the BMS devices working I started on Door Access devices, but it's still going under the wrong authorization policy, I have set to match with RADIUS and OUI name, set the certainty factor to even a stupid high figure of 50 and still fails.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any help please guys?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Kevin&lt;/P&gt;</description>
      <pubDate>Thu, 30 Sep 2021 15:01:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4477777#M570064</guid>
      <dc:creator>kevin.twaddell</dc:creator>
      <dc:date>2021-09-30T15:01:39Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4477795#M570066</link>
      <description>&lt;P&gt;In the authentication details from the Radius Live Logs page, do those devices show being profiled correctly?&lt;BR /&gt;If you can share the device profile and the auth details, it might help provide a better response.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Sep 2021 15:19:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4477795#M570066</guid>
      <dc:creator>ComputerRick</dc:creator>
      <dc:date>2021-09-30T15:19:01Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4478164#M570079</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;No that's my point or I'm missing the point &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Do you mean show the Endpoint Context Visibility info?&lt;/P&gt;&lt;P&gt;I'm on a massive learning curve so please bear with me.&lt;/P&gt;</description>
      <pubDate>Fri, 01 Oct 2021 08:28:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4478164#M570079</guid>
      <dc:creator>kevin.twaddell</dc:creator>
      <dc:date>2021-10-01T08:28:34Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4478181#M570080</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1254741"&gt;@kevin.twaddell&lt;/a&gt; please provide the screenshot of the new profiling policy you created. Also go to Work Centers &amp;gt; Profiler &amp;gt; Endpoints, select the MAC address of the endpoint and provide a screenshot for review. We'll need the information such as OUI, Total Certainty Factor, Endpoint Policy amongst others etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;FYI, Here is the offical Cisco ISE profiling guide.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-documents/ise-profiling-design-guide/ta-p/3739456" target="_blank" rel="noopener"&gt;https://community.cisco.com/t5/security-documents/ise-profiling-design-guide/ta-p/3739456&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Oct 2021 09:35:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4478181#M570080</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-10-01T09:35:23Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4478811#M570120</link>
      <description>&lt;P&gt;If it's hitting the wrong authz policy, I prefer to get the auth details from the Radius Live Logs page.&lt;/P&gt;
&lt;P&gt;Find a device that fails, and in the 3rd column from the left should be a paper icon, if you click that, it shows all of the info and logic for that session.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That, in addition to the profile should be everything needed for someone here to help you resolve this.&lt;/P&gt;</description>
      <pubDate>Sun, 03 Oct 2021 13:55:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4478811#M570120</guid>
      <dc:creator>ComputerRick</dc:creator>
      <dc:date>2021-10-03T13:55:35Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479124#M570134</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So back on this today, its matching against our default&amp;nbsp;&lt;SPAN&gt;Authorization Policy, so everything goes in this unless it a different matching policy which is what I'm trying to create.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I've attached the log from it doing this but I'm not seeing why, if one of you kind chaps could point me in the right direction please?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Kevin&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Oct 2021 09:31:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479124#M570134</guid>
      <dc:creator>kevin.twaddell</dc:creator>
      <dc:date>2021-10-04T09:31:27Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479203#M570137</link>
      <description>&lt;P&gt;Maybe you have a logic error in your Policy, because the Log shows 2 Logical Profiles the Device is assigned to.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What does your Policy look like for this device?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Oct 2021 10:36:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479203#M570137</guid>
      <dc:creator>Oliver Laue</dc:creator>
      <dc:date>2021-10-04T10:36:23Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479230#M570138</link>
      <description>&lt;P&gt;so PAH-BMS-Door-Access was the profile used before I create this one, it never worked then either, but we needed to split the profiles up so I created 2 new ones, as my opening message BMS works fine, there are NO conditions in the old PAH-BMS-Door-Access profile&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've attached the PAH-Door-Access profile&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Kevin&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Oct 2021 10:59:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479230#M570138</guid>
      <dc:creator>kevin.twaddell</dc:creator>
      <dc:date>2021-10-04T10:59:25Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479355#M570141</link>
      <description>&lt;P&gt;Sorry, I meant your Authorization Policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Bildschirmfoto 2021-10-04 um 14.05.11.png" style="width: 489px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/133182iAEDD4CC8123F680E/image-size/large?v=v2&amp;amp;px=999" role="button" title="Bildschirmfoto 2021-10-04 um 14.05.11.png" alt="Bildschirmfoto 2021-10-04 um 14.05.11.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;if you do a combined rule which should match multiple Profiles you have to check to do an "or" instead of on "and".&lt;/P&gt;</description>
      <pubDate>Mon, 04 Oct 2021 12:06:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479355#M570141</guid>
      <dc:creator>Oliver Laue</dc:creator>
      <dc:date>2021-10-04T12:06:40Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479369#M570142</link>
      <description>&lt;P&gt;Is this what you mean?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the working BMS is not set that way though!&lt;/P&gt;</description>
      <pubDate>Mon, 04 Oct 2021 12:21:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479369#M570142</guid>
      <dc:creator>kevin.twaddell</dc:creator>
      <dc:date>2021-10-04T12:21:48Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479376#M570144</link>
      <description>&lt;P&gt;Rewrite your Rule to use EndPointPolicy instead of IdentityGroup.&lt;/P&gt;&lt;P&gt;According to the ISE Detail log the Device has the IdentityGroup: Profiled&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Oct 2021 12:35:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479376#M570144</guid>
      <dc:creator>Oliver Laue</dc:creator>
      <dc:date>2021-10-04T12:35:21Z</dc:date>
    </item>
    <item>
      <title>Re: Profiling for a certain OUI not working</title>
      <link>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479382#M570145</link>
      <description>&lt;P&gt;That appears to have sorted it, I don't know the difference yet but I'll read up and try and work out what it is, thank you very much for your help.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Kevin&lt;/P&gt;</description>
      <pubDate>Mon, 04 Oct 2021 12:50:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/profiling-for-a-certain-oui-not-working/m-p/4479382#M570145</guid>
      <dc:creator>kevin.twaddell</dc:creator>
      <dc:date>2021-10-04T12:50:54Z</dc:date>
    </item>
  </channel>
</rss>

