cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
883
Views
0
Helpful
2
Replies

EasyConnect and threat response

dsheaffe@cisco.com
Cisco Employee
Cisco Employee

Hi all

Does the use of EasyConnect for authentication limit ISE's ability to send a CoA to a NAS in response to a security threat? 

Danny

1 Accepted Solution

Accepted Solutions

hariholla
Cisco Employee
Cisco Employee

Hi Danny,

All the threat containment flows apply to Easy Connect sessions too. We have some use cases like ISE + Qualys and ISE + Stealthwatch working with EasyConnect in our labs. EasyConnect is essentially MAB from RADIUS standpoint and ISE can change the authorization on specific triggers. Is there a specific scenario where you think the combo wouldn't work?

-Hari

View solution in original post

2 Replies 2

hariholla
Cisco Employee
Cisco Employee

Hi Danny,

All the threat containment flows apply to Easy Connect sessions too. We have some use cases like ISE + Qualys and ISE + Stealthwatch working with EasyConnect in our labs. EasyConnect is essentially MAB from RADIUS standpoint and ISE can change the authorization on specific triggers. Is there a specific scenario where you think the combo wouldn't work?

-Hari

Thank you Hari.  I didn't have a specific scenario in mind.  I thought it should work but just wanted to confirm. 

Danny