<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: policy set not working in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/policy-set-not-working/m-p/5337032#M598463</link>
    <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I suppose you deployed an agent from the ise directly ?&lt;/P&gt;
&lt;P&gt;Check if you domains controller are reachable by the ise in the work center, also if the agent itself is running in the DC machine.&lt;/P&gt;
&lt;P&gt;Also check if you don't have any flows blocked by you firewall or any act that could drop the traffic between the ise and your DC. Port 9095 has to be allowed.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 08 Oct 2025 20:10:22 GMT</pubDate>
    <dc:creator>k2no</dc:creator>
    <dc:date>2025-10-08T20:10:22Z</dc:date>
    <item>
      <title>policy set not working</title>
      <link>https://community.cisco.com/t5/network-access-control/policy-set-not-working/m-p/5336971#M598456</link>
      <description>&lt;P&gt;I'm in a testing environment, i'm going only passiveID no network devices. I deployed the PIC agent on the DC and everything is working, however when i tested the policy set to deny access based on the AD groups it still grant access. what im i missing?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the reason why im not using network devices is because im in the military and the NEC controls all the network devices and i am not allowed to touch them.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Oct 2025 17:00:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/policy-set-not-working/m-p/5336971#M598456</guid>
      <dc:creator>zacht5476</dc:creator>
      <dc:date>2025-10-08T17:00:49Z</dc:date>
    </item>
    <item>
      <title>Re: policy set not working</title>
      <link>https://community.cisco.com/t5/network-access-control/policy-set-not-working/m-p/5337032#M598463</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I suppose you deployed an agent from the ise directly ?&lt;/P&gt;
&lt;P&gt;Check if you domains controller are reachable by the ise in the work center, also if the agent itself is running in the DC machine.&lt;/P&gt;
&lt;P&gt;Also check if you don't have any flows blocked by you firewall or any act that could drop the traffic between the ise and your DC. Port 9095 has to be allowed.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Oct 2025 20:10:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/policy-set-not-working/m-p/5337032#M598463</guid>
      <dc:creator>k2no</dc:creator>
      <dc:date>2025-10-08T20:10:22Z</dc:date>
    </item>
    <item>
      <title>Re: policy set not working</title>
      <link>https://community.cisco.com/t5/network-access-control/policy-set-not-working/m-p/5337035#M598464</link>
      <description>&lt;P&gt;yes, its reachable and no firewalls are blocking it&lt;/P&gt;</description>
      <pubDate>Wed, 08 Oct 2025 20:16:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/policy-set-not-working/m-p/5337035#M598464</guid>
      <dc:creator>zacht5476</dc:creator>
      <dc:date>2025-10-08T20:16:13Z</dc:date>
    </item>
  </channel>
</rss>

