<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE EAP-TLS identities send over PxGrid as user in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4979224#M585751</link>
    <description>&lt;P&gt;Hi!&lt;/P&gt;&lt;P&gt;We are using ISE to authenticate computers connecting to our LAN using EAP-TLS and share those authenticated identities over PxGrid with 3rd party products.&lt;/P&gt;&lt;P&gt;The problem we are hitting is PxGrid shares those identities as user identities and not as machine identities. Is there any way to influence that?&lt;/P&gt;&lt;P&gt;This is working fine on MAB authenticated computers, as their identities are shared by the PxGrid as machine identity.&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
    <pubDate>Fri, 15 Dec 2023 15:38:23 GMT</pubDate>
    <dc:creator>Ezequ!el</dc:creator>
    <dc:date>2023-12-15T15:38:23Z</dc:date>
    <item>
      <title>ISE EAP-TLS identities send over PxGrid as user</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4979224#M585751</link>
      <description>&lt;P&gt;Hi!&lt;/P&gt;&lt;P&gt;We are using ISE to authenticate computers connecting to our LAN using EAP-TLS and share those authenticated identities over PxGrid with 3rd party products.&lt;/P&gt;&lt;P&gt;The problem we are hitting is PxGrid shares those identities as user identities and not as machine identities. Is there any way to influence that?&lt;/P&gt;&lt;P&gt;This is working fine on MAB authenticated computers, as their identities are shared by the PxGrid as machine identity.&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 15:38:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4979224#M585751</guid>
      <dc:creator>Ezequ!el</dc:creator>
      <dc:date>2023-12-15T15:38:23Z</dc:date>
    </item>
    <item>
      <title>Re: ISE EAP-TLS identities send over PxGrid as user</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4979249#M585756</link>
      <description>&lt;P&gt;can you share a live log detail for your EAP-TLS successful authentication&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 16:17:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4979249#M585756</guid>
      <dc:creator>Ambuj M</dc:creator>
      <dc:date>2023-12-15T16:17:02Z</dc:date>
    </item>
    <item>
      <title>Re: ISE EAP-TLS identities send over PxGrid as user</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4983499#M585867</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I am Ezequiel's colleague. All of our clients have these problems.&lt;/P&gt;&lt;P&gt;I hope you mean the following:&lt;/P&gt;&lt;P&gt;Authentication Details&lt;/P&gt;&lt;TABLE border="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;Source Timestamp&lt;/TD&gt;&lt;TD&gt;2023-12-22 02:26:03.652&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Received Timestamp&lt;/TD&gt;&lt;TD&gt;2023-12-22 02:26:03.652&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Policy Server&lt;/TD&gt;&lt;TD&gt;cisco-ise&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Event&lt;/TD&gt;&lt;TD&gt;5200 Authentication succeeded&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Username&lt;/TD&gt;&lt;TD&gt;pc.local.domain&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Endpoint Id&lt;/TD&gt;&lt;TD&gt;99:62:26:BF:99:D3&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Calling Station Id&lt;/TD&gt;&lt;TD&gt;45-32-99-AD-99-D3&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Endpoint Profile&lt;/TD&gt;&lt;TD&gt;HP-Device&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;IPv4 Address&lt;/TD&gt;&lt;TD&gt;10.98.98.98&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;IPv6 Address&lt;/TD&gt;&lt;TD&gt;xxxx&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Identity Group&lt;/TD&gt;&lt;TD&gt;Profiled&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Audit Session Id&lt;/TD&gt;&lt;TD&gt;5EA772359700991A8F32A868&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Authentication Method&lt;/TD&gt;&lt;TD&gt;dot1x&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Authentication Protocol&lt;/TD&gt;&lt;TD&gt;EAP-TLS&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Service Type&lt;/TD&gt;&lt;TD&gt;Framed&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Network Device&lt;/TD&gt;&lt;TD&gt;switch123.local.domain&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Device Type&lt;/TD&gt;&lt;TD&gt;All Device Types#SDA&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Location&lt;/TD&gt;&lt;TD&gt;All Locations#GER&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;NAS IPv4 Address&lt;/TD&gt;&lt;TD&gt;10.99.99.99&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;NAS Port Id&lt;/TD&gt;&lt;TD&gt;GigabitEthernet1/0/1&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;NAS Port Type&lt;/TD&gt;&lt;TD&gt;Ethernet&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Authorization Profile&lt;/TD&gt;&lt;TD&gt;Result_SGT123&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Security Group&lt;/TD&gt;&lt;TD&gt;SGT123&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Response Time&lt;/TD&gt;&lt;TD&gt;11&amp;nbsp;milliseconds&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;Many thanks and best regards&lt;/P&gt;&lt;P&gt;Uli&lt;/P&gt;</description>
      <pubDate>Fri, 22 Dec 2023 09:12:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4983499#M585867</guid>
      <dc:creator>Uli1412</dc:creator>
      <dc:date>2023-12-22T09:12:32Z</dc:date>
    </item>
    <item>
      <title>Re: ISE EAP-TLS identities send over PxGrid as user</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4986540#M585914</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/279126"&gt;@Ezequ!el&lt;/a&gt;&amp;nbsp;and&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1654644"&gt;@Uli1412&lt;/a&gt;&amp;nbsp;The session info sent from ISE via pxGrid does indicate whether the auth sessions resulted from computer/machine auth. Until Firepower able to consume such correctly, please separate the ISE deployments if possible.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Dec 2023 18:45:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4986540#M585914</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2023-12-28T18:45:52Z</dc:date>
    </item>
    <item>
      <title>Re: ISE EAP-TLS identities send over PxGrid as user</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4993643#M586213</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/113005"&gt;@hslai&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your answer!&lt;/P&gt;&lt;P&gt;What do you mean by "seperate the ISE deployments"?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 10 Jan 2024 13:15:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-eap-tls-identities-send-over-pxgrid-as-user/m-p/4993643#M586213</guid>
      <dc:creator>Uli1412</dc:creator>
      <dc:date>2024-01-10T13:15:18Z</dc:date>
    </item>
  </channel>
</rss>

