<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic HiPlease how can I create a in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550058#M72831</link>
    <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;Please how can I create a rule to permit windows RDP on machine authentication for a specific user (windows user login : RDPTEST)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help&lt;/P&gt;</description>
    <pubDate>Thu, 02 Oct 2014 09:08:06 GMT</pubDate>
    <dc:creator>nicanor00</dc:creator>
    <dc:date>2014-10-02T09:08:06Z</dc:date>
    <item>
      <title>windows remote access</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550055#M72828</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;I have ISE 1.2 and there an issue with windows remote access on the computer&lt;/P&gt;&lt;P&gt;I use remote access to give assistance to remote user&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Issue description:&lt;BR /&gt;The windows remote access&amp;nbsp; are possible as much as the user’s assistance does not required to switch to an admin account&lt;BR /&gt;In case a switch to admin account is done, the network connection is lost and I can no more continue unless the remote user reconnects again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please how can I configure ISE to permit remote acces and switch to administrator user session without loose conexion ?&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 05:04:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550055#M72828</guid>
      <dc:creator>nicanor00</dc:creator>
      <dc:date>2019-03-11T05:04:07Z</dc:date>
    </item>
    <item>
      <title>So I am assuming that you are</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550056#M72829</link>
      <description>&lt;P&gt;So I am assuming that you are using "user only" based authentication. Correct? If so, that is the problem and it is a problem with Windows XP, 7 and even 8. It appears that during the RDP session, only machine credentials are sent, thus the 802.1x authentication fails. The workaround is to either switch the devices to perform "machine" based authentication or "user or machine" based authentication. In ISE then you will have to create a rule for machine based authentication to permit RDP based ports.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Take a look at the following links:&lt;/P&gt;&lt;P&gt;&lt;A href="https://supportforums.cisco.com/discussion/12003786/cisco-ise-12-8021x-wires-ms-rdp"&gt;https://supportforums.cisco.com/discussion/12003786/cisco-ise-12-8021x-wires-ms-rdp&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://social.technet.microsoft.com/Forums/windows/en-US/507cd666-9c86-423c-bbed-789b9e975bd9/windows-7-rdp-and-8021x-authentication"&gt;http://social.technet.microsoft.com/Forums/windows/en-US/507cd666-9c86-423c-bbed-789b9e975bd9/windows-7-rdp-and-8021x-authentication&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hope this helps!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Sep 2014 20:46:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550056#M72829</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2014-09-29T20:46:51Z</dc:date>
    </item>
    <item>
      <title>HiI am using machine auth</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550057#M72830</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;I am using machine auth first then user authentication after user login&lt;/P&gt;&lt;P&gt;But I can create specific authorization profile for the administrator (windows user login : remoteaccess)&lt;/P&gt;&lt;P&gt;How would I configure rule for that specific user ?&lt;/P&gt;&lt;P&gt;How create a rule for machine based authentication to permit RDP based ports ?&lt;/P&gt;&lt;P&gt;Check some printscreen of my config in attachement : it is not work&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help&lt;/P&gt;</description>
      <pubDate>Tue, 30 Sep 2014 12:10:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550057#M72830</guid>
      <dc:creator>nicanor00</dc:creator>
      <dc:date>2014-09-30T12:10:48Z</dc:date>
    </item>
    <item>
      <title>HiPlease how can I create a</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550058#M72831</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;Please how can I create a rule to permit windows RDP on machine authentication for a specific user (windows user login : RDPTEST)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help&lt;/P&gt;</description>
      <pubDate>Thu, 02 Oct 2014 09:08:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550058#M72831</guid>
      <dc:creator>nicanor00</dc:creator>
      <dc:date>2014-10-02T09:08:06Z</dc:date>
    </item>
    <item>
      <title>You can try to create a rule</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550059#M72832</link>
      <description>&lt;P&gt;You can try to create a rule that allows machine based authentication and with that you can return an authorization profile that allows RDP and perhaps block everything else. Or you can just allow everything.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The rule in your screenshot above is referencing a user-based authentication.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Oct 2014 18:51:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550059#M72832</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2014-10-02T18:51:20Z</dc:date>
    </item>
    <item>
      <title>Hi Neno,</title>
      <link>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550060#M72833</link>
      <description>&lt;P style="margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;Hi Neno,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="outline: none; orphans: auto; text-align: start; widows: 1; -webkit-text-stroke-width: 0px; word-spacing: 0px; margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="outline: none; orphans: auto; text-align: start; widows: 1; -webkit-text-stroke-width: 0px; word-spacing: 0px; margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;Somewhat same issue I am also facing, we are running with ISE 1.4 and we are running with machine + user auth.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="outline: none; orphans: auto; text-align: start; widows: 1; -webkit-text-stroke-width: 0px; word-spacing: 0px; margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;But once user gets login to his machine and try to access rdp or copying any file, and if he locked the machine then its stopping the session and use has to do log-off login to reinitiate the connection.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="outline: none; orphans: auto; text-align: start; widows: 1; -webkit-text-stroke-width: 0px; word-spacing: 0px; margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;Currently end point are - windows 10 and window 8&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="outline: none; orphans: auto; text-align: start; widows: 1; -webkit-text-stroke-width: 0px; word-spacing: 0px; margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;We are using user or machine option in windows native supplicant,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="outline: none; orphans: auto; text-align: start; widows: 1; -webkit-text-stroke-width: 0px; word-spacing: 0px; margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="outline: none; orphans: auto; text-align: start; widows: 1; -webkit-text-stroke-width: 0px; word-spacing: 0px; margin: 0in 0in 7.5pt 0in;"&gt;&lt;SPAN style="font-family: 'Arial','sans-serif'; color: #333333;"&gt;Thanks in advance&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 24 Nov 2015 05:52:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/windows-remote-access/m-p/2550060#M72833</guid>
      <dc:creator>Pranav Gade</dc:creator>
      <dc:date>2015-11-24T05:52:52Z</dc:date>
    </item>
  </channel>
</rss>

