<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ISE Multiple Sites in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise-multiple-sites/m-p/4913179#M583691</link>
    <description>&lt;P&gt;Only create different policy sets if your policies are indeed different otherwise, keep your life and policies simple and use the same everywhere! You typically want to create different policy sets for different access methods (wired, wireless, VPN) or authentication types (MAB, 802.1X) or scenarios (Corporate, IOT, Guest) or locations (country, region, zone, etc.) or any combinations of these as needed.&lt;/P&gt;
&lt;P&gt;See &lt;SPAN class="lia-message-read"&gt;&lt;A id="link_7" class="page-link lia-link-navigation lia-custom-event" href="https://community.cisco.com/t5/security-knowledge-base/ise-authentication-and-authorization-policy-reference/ta-p/3850472" target="_blank"&gt;ISE Authentication and Authorization Policy Reference&lt;/A&gt; &amp;gt;&amp;nbsp; &lt;A href="https://community.cisco.com/t5/security-knowledge-base/ise-authentication-and-authorization-policy-reference/ta-p/3850472#toc-hId-1471743715" rel="nofollow noopener noreferrer" target="_blank"&gt;Policy Set Conditions&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-message-read"&gt;We also had an ISE webinar &lt;/SPAN&gt;▷&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A style="background-color: transparent; color: #155bda;" title="https://youtu.be/K4ZxoR8EQbQ" href="https://youtu.be/K4ZxoR8EQbQ" data-from-md="" target="_blank"&gt;Building ISE RADIUS&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;MARK style="background: #f7d26e; color: black;" data-markjs="true"&gt;Policy Set&lt;/MARK&gt;s&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;2022/05/03&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-message-read"&gt;and another one on &lt;/SPAN&gt;▷&amp;nbsp;&lt;A title="https://youtu.be/cP7nhIJSz24" href="https://youtu.be/cP7nhIJSz24" data-from-md="" target="_blank"&gt;Managing Network Devices in ISE&lt;/A&gt;&amp;nbsp;2022/04/05 :&lt;/P&gt;
&lt;P data-source-line="1771"&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1150s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1150s" data-from-md="" target="_blank"&gt;19:10&lt;/A&gt;&amp;nbsp;RADIUS with an Undefined Network Device&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1268s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1268s" data-from-md="" target="_blank"&gt;21:08&lt;/A&gt;&amp;nbsp;Enable and Use the Default Network Device&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1483s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1483s" data-from-md="" target="_blank"&gt;24:43&lt;/A&gt;&amp;nbsp;Network Device with an IP Range&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1590s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1590s" data-from-md="" target="_blank"&gt;26:30&lt;/A&gt;&amp;nbsp;Network Device with a Specific IP Address&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1680s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1680s" data-from-md="" target="_blank"&gt;28:00&lt;/A&gt;&amp;nbsp;Packet Capture Review&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1906s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1906s" data-from-md="" target="_blank"&gt;31:46&lt;/A&gt;&amp;nbsp;Network Device Groups (NDGs)&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=2052s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=2052s" data-from-md="" target="_blank"&gt;34:12&lt;/A&gt;&amp;nbsp;CSV Export &amp;amp; Import of NDGs and Network Devices&lt;/P&gt;</description>
    <pubDate>Mon, 28 Aug 2023 18:00:51 GMT</pubDate>
    <dc:creator>thomas</dc:creator>
    <dc:date>2023-08-28T18:00:51Z</dc:date>
    <item>
      <title>Cisco ISE Multiple Sites</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-multiple-sites/m-p/4911660#M583632</link>
      <description>&lt;P&gt;Hi how can i make policy sets with Cisco ISE for multiple sites?&lt;/P&gt;
&lt;P&gt;I just want to use 802.1x for wired and wireless network.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;Its better to create a policy set to each site?&lt;/P&gt;
&lt;P&gt;Example:&lt;BR /&gt;SITE A (Headquarter)&lt;BR /&gt;SITE B (Branch 1)&lt;BR /&gt;SITE C (Branch 2)&lt;BR /&gt;SITE D (Branch 3)&lt;/P&gt;</description>
      <pubDate>Thu, 24 Aug 2023 23:50:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-multiple-sites/m-p/4911660#M583632</guid>
      <dc:creator>Leonardo Santana</dc:creator>
      <dc:date>2023-08-24T23:50:20Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Multiple Sites</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-multiple-sites/m-p/4911684#M583635</link>
      <description>&lt;P&gt;The only reason to do that would be if you need to provide different authorization on a per-site basis, which would not scale well and would be an operational burden. Ideally, you would create a centralised policy that would apply to all sites.&lt;/P&gt;
&lt;P&gt;I would suggest reviewing the &lt;A href="https://community.cisco.com/t5/security-knowledge-base/ise-secure-wired-access-prescriptive-deployment-guide/ta-p/3641515#toc-hId-1020565451" target="_blank" rel="noopener"&gt;Cisco ISE Secure Wired Access Prescriptive Deployment Guide&lt;/A&gt; for example policies.&lt;/P&gt;
&lt;P&gt;If you're new to ISE, there are also various Webinars available to gain a better understanding of the features and best practices.&lt;BR /&gt;&lt;A href="https://cs.co/ise-resources#Learn" target="_blank"&gt;https://cs.co/ise-resources#Learn&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 25 Aug 2023 01:47:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-multiple-sites/m-p/4911684#M583635</guid>
      <dc:creator>Greg Gibbs</dc:creator>
      <dc:date>2023-08-25T01:47:26Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Multiple Sites</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-multiple-sites/m-p/4913179#M583691</link>
      <description>&lt;P&gt;Only create different policy sets if your policies are indeed different otherwise, keep your life and policies simple and use the same everywhere! You typically want to create different policy sets for different access methods (wired, wireless, VPN) or authentication types (MAB, 802.1X) or scenarios (Corporate, IOT, Guest) or locations (country, region, zone, etc.) or any combinations of these as needed.&lt;/P&gt;
&lt;P&gt;See &lt;SPAN class="lia-message-read"&gt;&lt;A id="link_7" class="page-link lia-link-navigation lia-custom-event" href="https://community.cisco.com/t5/security-knowledge-base/ise-authentication-and-authorization-policy-reference/ta-p/3850472" target="_blank"&gt;ISE Authentication and Authorization Policy Reference&lt;/A&gt; &amp;gt;&amp;nbsp; &lt;A href="https://community.cisco.com/t5/security-knowledge-base/ise-authentication-and-authorization-policy-reference/ta-p/3850472#toc-hId-1471743715" rel="nofollow noopener noreferrer" target="_blank"&gt;Policy Set Conditions&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-message-read"&gt;We also had an ISE webinar &lt;/SPAN&gt;▷&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A style="background-color: transparent; color: #155bda;" title="https://youtu.be/K4ZxoR8EQbQ" href="https://youtu.be/K4ZxoR8EQbQ" data-from-md="" target="_blank"&gt;Building ISE RADIUS&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;MARK style="background: #f7d26e; color: black;" data-markjs="true"&gt;Policy Set&lt;/MARK&gt;s&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;2022/05/03&lt;/P&gt;
&lt;P&gt;&lt;SPAN class="lia-message-read"&gt;and another one on &lt;/SPAN&gt;▷&amp;nbsp;&lt;A title="https://youtu.be/cP7nhIJSz24" href="https://youtu.be/cP7nhIJSz24" data-from-md="" target="_blank"&gt;Managing Network Devices in ISE&lt;/A&gt;&amp;nbsp;2022/04/05 :&lt;/P&gt;
&lt;P data-source-line="1771"&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1150s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1150s" data-from-md="" target="_blank"&gt;19:10&lt;/A&gt;&amp;nbsp;RADIUS with an Undefined Network Device&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1268s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1268s" data-from-md="" target="_blank"&gt;21:08&lt;/A&gt;&amp;nbsp;Enable and Use the Default Network Device&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1483s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1483s" data-from-md="" target="_blank"&gt;24:43&lt;/A&gt;&amp;nbsp;Network Device with an IP Range&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1590s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1590s" data-from-md="" target="_blank"&gt;26:30&lt;/A&gt;&amp;nbsp;Network Device with a Specific IP Address&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1680s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1680s" data-from-md="" target="_blank"&gt;28:00&lt;/A&gt;&amp;nbsp;Packet Capture Review&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=1906s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=1906s" data-from-md="" target="_blank"&gt;31:46&lt;/A&gt;&amp;nbsp;Network Device Groups (NDGs)&lt;BR /&gt;&lt;A title="https://youtu.be/cP7nhIJSz24&amp;amp;t=2052s" href="https://youtu.be/cP7nhIJSz24&amp;amp;t=2052s" data-from-md="" target="_blank"&gt;34:12&lt;/A&gt;&amp;nbsp;CSV Export &amp;amp; Import of NDGs and Network Devices&lt;/P&gt;</description>
      <pubDate>Mon, 28 Aug 2023 18:00:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-multiple-sites/m-p/4913179#M583691</guid>
      <dc:creator>thomas</dc:creator>
      <dc:date>2023-08-28T18:00:51Z</dc:date>
    </item>
  </channel>
</rss>

