<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Policy Set function on authentication and authorization. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4465333#M1083621</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1190993"&gt;@Leftz&lt;/a&gt; I generally use policy set conditions to distinguish between different connection scenarios, such as 802.1x Open Mode or 802.1x Closed More or Remote Access VPN etc. In a large complex environment, without having multiple Policy Sets you could have a overly complex Policy Set. By using multiple Policy Sets if the connection does not match the condition configured under the Policy Set, it will completely skip that Policy Set until it matches another, at which point it will process the associated authentication and authorisation rules. Depending on the size of your environment, using multiple Policy Sets will speed up the authentication/authorisation process.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 13 Sep 2021 20:57:19 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2021-09-13T20:57:19Z</dc:date>
    <item>
      <title>Policy Set function on authentication and authorization.</title>
      <link>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4465320#M1083619</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;We know Policy set is a container containing authentication and authorization rules etc. each authentication and authorization policy also has Conditions option for us to fill out, but Policy Set also has Condition option that we use to define. How does this Policy set Condition work? Do you think Policy set condition is&amp;nbsp; necessary?&lt;/P&gt;</description>
      <pubDate>Mon, 13 Sep 2021 20:23:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4465320#M1083619</guid>
      <dc:creator>Leftz</dc:creator>
      <dc:date>2021-09-13T20:23:11Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Set function on authentication and authorization.</title>
      <link>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4465333#M1083621</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1190993"&gt;@Leftz&lt;/a&gt; I generally use policy set conditions to distinguish between different connection scenarios, such as 802.1x Open Mode or 802.1x Closed More or Remote Access VPN etc. In a large complex environment, without having multiple Policy Sets you could have a overly complex Policy Set. By using multiple Policy Sets if the connection does not match the condition configured under the Policy Set, it will completely skip that Policy Set until it matches another, at which point it will process the associated authentication and authorisation rules. Depending on the size of your environment, using multiple Policy Sets will speed up the authentication/authorisation process.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Sep 2021 20:57:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4465333#M1083621</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-09-13T20:57:19Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Set function on authentication and authorization.</title>
      <link>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4466174#M1083642</link>
      <description>&lt;P&gt;Thank you Rob! Can I say in some situation, the condition in Policy set is not required?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Sep 2021 14:08:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4466174#M1083642</guid>
      <dc:creator>Leftz</dc:creator>
      <dc:date>2021-09-14T14:08:29Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Set function on authentication and authorization.</title>
      <link>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4466181#M1083643</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1190993"&gt;@Leftz&lt;/a&gt; you don't need a condition on the default policy set. If you have more than one policy set you will need a unique condition to differentiate between the 2 policy sets.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Sep 2021 14:18:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4466181#M1083643</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-09-14T14:18:38Z</dc:date>
    </item>
    <item>
      <title>Re: Policy Set function on authentication and authorization.</title>
      <link>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4467177#M1083707</link>
      <description>&lt;P&gt;Understood. Thank you Rob!&lt;/P&gt;</description>
      <pubDate>Wed, 15 Sep 2021 19:08:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/policy-set-function-on-authentication-and-authorization/m-p/4467177#M1083707</guid>
      <dc:creator>Leftz</dc:creator>
      <dc:date>2021-09-15T19:08:53Z</dc:date>
    </item>
  </channel>
</rss>

