<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Marvin,yes, I'm aware of SCEP in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716682#M919215</link>
    <description>&lt;P&gt;Marvin,&lt;/P&gt;&lt;P&gt;yes, I'm aware of SCEP configuration in ISE, and it works fine with NSP. If using NSP, it will talk to ISE and provision certificate for the Windows client just fine. What I'm wondering is how to make it work without NSP, аnd with CPP for Anyconnect. When client connects with CPP portal and gets Anyconnect with NAM install, there are no options in XML profile for NAM to do SCEP provisioning. I'm trying to understand how to get certificate to the client in this situation.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
    <pubDate>Fri, 22 May 2015 20:56:01 GMT</pubDate>
    <dc:creator>dgolovach</dc:creator>
    <dc:date>2015-05-22T20:56:01Z</dc:date>
    <item>
      <title>AnyConnect 4.0 Integration with ISE Version 1.3. Certificate</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716678#M919208</link>
      <description>&lt;P&gt;Hi all!&lt;/P&gt;&lt;P&gt;Is it possible to configure ISE 1.3 for provisioning AnyConnect 4.0&amp;nbsp;and pushing certificate (as by using&amp;nbsp;native supplicant)?&amp;nbsp;So, after that, AnyConnect will be able to use EAP-TLS and cert for network access.&lt;/P&gt;&lt;P&gt;It will be great, if it is possible with disabled VPN Module&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 13:28:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716678#M919208</guid>
      <dc:creator>dgolovach</dc:creator>
      <dc:date>2020-02-21T13:28:15Z</dc:date>
    </item>
    <item>
      <title>Yes. This is a relatively</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716679#M919209</link>
      <description>&lt;P&gt;Yes. This is a relatively commonly implemented use case.&lt;/P&gt;</description>
      <pubDate>Fri, 08 May 2015 03:49:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716679#M919209</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-05-08T03:49:07Z</dc:date>
    </item>
    <item>
      <title>Thank you for your reply</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716680#M919211</link>
      <description>&lt;P&gt;Thank you for your reply.&lt;/P&gt;&lt;P&gt;Where can I read about how to do this?&lt;/P&gt;&lt;P&gt;I can provision AnyConnect with client EAP-TLS authe and it works if there is existing certificate at client PC. If there is no certificate, NAM is not provisioning it to the client.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Fri, 15 May 2015 15:03:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716680#M919211</guid>
      <dc:creator>dgolovach</dc:creator>
      <dc:date>2015-05-15T15:03:01Z</dc:date>
    </item>
    <item>
      <title>Please have a look at the two</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716681#M919214</link>
      <description>&lt;P&gt;Please have a look at the two How To: BYOD... documents on the &lt;A href="http://www.cisco.com/c/en/us/support/security/identity-services-engine/products-implementation-design-guides-list.html"&gt;ISE Design Guides page&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;Specifically, note around page 34 and onward&amp;nbsp;in&amp;nbsp;the &lt;A href="http://www.cisco.com/c/dam/en/us/td/docs/security/ise/how_to/HowTo-60-BYOD-Using_Certificates_For_Differentiated_Access.pdf"&gt;2nd document&lt;/A&gt;&amp;nbsp;where they talk about setting up the Simple Certificate Enrollment Protocol (SCEP) profile and&amp;nbsp;server.&lt;/P&gt;</description>
      <pubDate>Fri, 15 May 2015 17:13:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716681#M919214</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2015-05-15T17:13:52Z</dc:date>
    </item>
    <item>
      <title>Marvin,yes, I'm aware of SCEP</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716682#M919215</link>
      <description>&lt;P&gt;Marvin,&lt;/P&gt;&lt;P&gt;yes, I'm aware of SCEP configuration in ISE, and it works fine with NSP. If using NSP, it will talk to ISE and provision certificate for the Windows client just fine. What I'm wondering is how to make it work without NSP, аnd with CPP for Anyconnect. When client connects with CPP portal and gets Anyconnect with NAM install, there are no options in XML profile for NAM to do SCEP provisioning. I'm trying to understand how to get certificate to the client in this situation.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Fri, 22 May 2015 20:56:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-4-0-integration-with-ise-version-1-3-certificate/m-p/2716682#M919215</guid>
      <dc:creator>dgolovach</dc:creator>
      <dc:date>2015-05-22T20:56:01Z</dc:date>
    </item>
  </channel>
</rss>

