<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE to assign group policies on ASA in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-to-assign-group-policies-on-asa/m-p/2458710#M87561</link>
    <description>&lt;P&gt;Does anyone know if this is possible to use ISE to hand out group policies on the ASA based on AD group, or username?&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 04:29:17 GMT</pubDate>
    <dc:creator>Stephen Brady</dc:creator>
    <dc:date>2019-03-11T04:29:17Z</dc:date>
    <item>
      <title>ISE to assign group policies on ASA</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-to-assign-group-policies-on-asa/m-p/2458710#M87561</link>
      <description>&lt;P&gt;Does anyone know if this is possible to use ISE to hand out group policies on the ASA based on AD group, or username?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 04:29:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-to-assign-group-policies-on-asa/m-p/2458710#M87561</guid>
      <dc:creator>Stephen Brady</dc:creator>
      <dc:date>2019-03-11T04:29:17Z</dc:date>
    </item>
    <item>
      <title>ISE to assign group policies on ASA</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-to-assign-group-policies-on-asa/m-p/2458711#M87562</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Refer to BYOD Policy Enforcement using Security Group access from below&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Borderless_Networks/Unified_Access/BYOD_Design_Guide/BYOD_Policy.html"&gt;http://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Borderless_Networks/Unified_Access/BYOD_Design_Guide/BYOD_Policy.html&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Mar 2014 09:50:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-to-assign-group-policies-on-asa/m-p/2458711#M87562</guid>
      <dc:creator>Saurav Lodh</dc:creator>
      <dc:date>2014-03-05T09:50:53Z</dc:date>
    </item>
    <item>
      <title>Hi Stephen,If I am not wrong</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-to-assign-group-policies-on-asa/m-p/2458712#M87563</link>
      <description>&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;&lt;SPAN style="font-family:verdana,geneva,sans-serif;"&gt;Hi Stephen,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;&lt;SPAN style="font-family:verdana,geneva,sans-serif;"&gt;If I am not wrong you would like to push the group-policy name to configure group-lock feature. Yes, this can be done based on the AD (as a condition). Please look at the attached screen shot of how you can define the ASA group on ISE. The same group (case sensitive) should be predefined on the ASA to lock the user of the AD group to that specific group-policy only.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;&lt;SPAN style="font-family:verdana,geneva,sans-serif;"&gt;Once you're done with the authorization profile, create a authz rule under policy elements &amp;gt; authorization &amp;gt; create a condition with the AD group you want and select the autorization profile you created as a result in the previous step.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;&lt;SPAN style="font-family:verdana,geneva,sans-serif;"&gt;Regards,&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;&lt;SPAN style="font-family:verdana,geneva,sans-serif;"&gt;Jatin Katyal&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size:12px;"&gt;&lt;SPAN style="font-family:verdana,geneva,sans-serif;"&gt;*Do rate helpful posts*&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 17 Mar 2014 03:28:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-to-assign-group-policies-on-asa/m-p/2458712#M87563</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2014-03-17T03:28:32Z</dc:date>
    </item>
  </channel>
</rss>

