<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ISE Passive Identity Question in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926672#M584153</link>
    <description>&lt;P&gt;check the compatablity matrix, base License covers your needs, make sure you have enough License ISE to integrate with WSA&lt;/P&gt;</description>
    <pubDate>Wed, 20 Sep 2023 15:46:05 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2023-09-20T15:46:05Z</dc:date>
    <item>
      <title>Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926630#M584146</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I have an existing ISE deployment already integrated with Microsoft AD. Now we have an ongoing implementation of Cisco WSA and there is a requirement to use ISE for transparent authentication. So should I need to purchase additional license for enabling the passive identity service on the existing ISE nodes?. I know that ISE-PIC can be installed as a standalone server, but my plan is to use the existing ISE nodes. Please advise.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Shabeeb&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 14:41:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926630#M584146</guid>
      <dc:creator>SHABEEB KUNHIPOCKER</dc:creator>
      <dc:date>2023-09-20T14:41:26Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926633#M584147</link>
      <description>&lt;P&gt;what version of WSA ( Async OS&amp;nbsp; 15.X can integrate with ISE )&amp;nbsp; Do you have ISE/pxgrid&amp;nbsp; in place ?&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/wsa/wsa-15-0/user-guide/wsa-userguide-15-0/b_WSA_UserGuide_11_7_chapter_01000.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/wsa/wsa-15-0/user-guide/wsa-userguide-15-0/b_WSA_UserGuide_11_7_chapter_01000.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 14:52:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926633#M584147</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-09-20T14:52:57Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926647#M584148</link>
      <description>&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/products/collateral/security/identity-services-engine/ise-licensing-guide-og.html" target="_blank"&gt;https://www.cisco.com/c/en/us/products/collateral/security/identity-services-engine/ise-licensing-guide-og.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 15:04:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926647#M584148</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2023-09-20T15:04:13Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926651#M584149</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I do not need the SGT information from ISE. I just need to use AD user and group information from ISE. My WSA version is 14.x and I think we can still integrate ISE with WSA.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 15:11:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926651#M584149</guid>
      <dc:creator>SHABEEB KUNHIPOCKER</dc:creator>
      <dc:date>2023-09-20T15:11:10Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926653#M584150</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I have seen this link, but could not find what I am looking for. First thing is that the ISE deployment what we have is version 2.7. The question is whether we need additional license for enabling PIC.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 15:13:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926653#M584150</guid>
      <dc:creator>SHABEEB KUNHIPOCKER</dc:creator>
      <dc:date>2023-09-20T15:13:12Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926655#M584151</link>
      <description>&lt;P&gt;Passive ID is covered under Base licensing.&amp;nbsp; Sharing with pxGrid requires Plus.&amp;nbsp; Do you have enough Plus licensing to cover each of your users who you will need to share with the WSA?&amp;nbsp;&amp;nbsp;&lt;BR /&gt;Also:&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/products/collateral/security/identity-services-engine/bulletin-c25-2943876.html" target="_blank"&gt;https://www.cisco.com/c/en/us/products/collateral/security/identity-services-engine/bulletin-c25-2943876.html&lt;/A&gt;&lt;BR /&gt;Also why Passive ID at all?&amp;nbsp; If you already have an ISE deployment why not use active authentication data and share that with the WSA?&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 15:16:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926655#M584151</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2023-09-20T15:16:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926664#M584152</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;Thanks a lot for the response. I need to check that with customer. So you mean if I have 3000 users I need to have 3000 plus licenses to have passive ID?.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 15:37:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926664#M584152</guid>
      <dc:creator>SHABEEB KUNHIPOCKER</dc:creator>
      <dc:date>2023-09-20T15:37:08Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926672#M584153</link>
      <description>&lt;P&gt;check the compatablity matrix, base License covers your needs, make sure you have enough License ISE to integrate with WSA&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 15:46:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926672#M584153</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-09-20T15:46:05Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ISE Passive Identity Question</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926681#M584154</link>
      <description>&lt;P&gt;Depends which version of the licensing guide you are looking at honestly.&amp;nbsp; With the 2.7 licensing statements in the admin guide 3000 Base licenses should cover your use-case since the WSA is a Cisco subscriber.&amp;nbsp; However, you still need Plus licensing to enable the feature.&amp;nbsp; Based on the current ISE licensing guide you need Advantage (previously Plus) licensing equal to the number of Passive ID sessions you are sharing with pxGrid.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Sep 2023 15:50:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-ise-passive-identity-question/m-p/4926681#M584154</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2023-09-20T15:50:20Z</dc:date>
    </item>
  </channel>
</rss>

