<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE BYOD implementation without Device Registration, endpoint cert in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-byod-implementation-without-device-registration-endpoint/m-p/4895284#M583141</link>
    <description>&lt;P&gt;Hello, we are looking to implement BYOD for our organization through ISE:&lt;/P&gt;&lt;P&gt;1) our intention is to basically allow only internet access for employees from their personal devices.&lt;/P&gt;&lt;P&gt;2) With the ISE BYOD flow, I understand that we could register and push endpoint certs to personal devices. However, since we do not want to manage nor provide any internal access to our network, can we still use ISE &amp;nbsp; BYOD Flow with dedicated Captive Portal authentication but don't want to register the device nor push the certificates?&lt;/P&gt;&lt;P&gt;3) Can we use same interface on the PSN to host both GUEST and BYOD Portals?&lt;/P&gt;</description>
    <pubDate>Sat, 29 Jul 2023 09:31:46 GMT</pubDate>
    <dc:creator>prathibha kota</dc:creator>
    <dc:date>2023-07-29T09:31:46Z</dc:date>
    <item>
      <title>ISE BYOD implementation without Device Registration, endpoint cert</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-byod-implementation-without-device-registration-endpoint/m-p/4895284#M583141</link>
      <description>&lt;P&gt;Hello, we are looking to implement BYOD for our organization through ISE:&lt;/P&gt;&lt;P&gt;1) our intention is to basically allow only internet access for employees from their personal devices.&lt;/P&gt;&lt;P&gt;2) With the ISE BYOD flow, I understand that we could register and push endpoint certs to personal devices. However, since we do not want to manage nor provide any internal access to our network, can we still use ISE &amp;nbsp; BYOD Flow with dedicated Captive Portal authentication but don't want to register the device nor push the certificates?&lt;/P&gt;&lt;P&gt;3) Can we use same interface on the PSN to host both GUEST and BYOD Portals?&lt;/P&gt;</description>
      <pubDate>Sat, 29 Jul 2023 09:31:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-byod-implementation-without-device-registration-endpoint/m-p/4895284#M583141</guid>
      <dc:creator>prathibha kota</dc:creator>
      <dc:date>2023-07-29T09:31:46Z</dc:date>
    </item>
    <item>
      <title>Re: ISE BYOD implementation without Device Registration, endpoint cert</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-byod-implementation-without-device-registration-endpoint/m-p/4895289#M583142</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1505345"&gt;@prathibha kota&lt;/a&gt; so you want BYOD for employee personal devices but without requiring a certificate? In which case create a CWA portal that uses AD authentication, the users connect to the SSID and authenticate using their AD credentials, if you wish to restrict access to the internal network apply a Downloadable ACL (DACL).&lt;/P&gt;
&lt;P&gt;Yes you can use the same interface or use a dedicated interface.&lt;/P&gt;</description>
      <pubDate>Sat, 29 Jul 2023 09:37:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-byod-implementation-without-device-registration-endpoint/m-p/4895289#M583142</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2023-07-29T09:37:24Z</dc:date>
    </item>
  </channel>
</rss>

