07-07-2017 07:25 AM
I believe the answer is no, but is there any way to utilize the Distinguish Name attribute in profiling? I know that is not one of the attributes queried by the AD Probe, but I have the attribute mapped over and it is capture when the device authenticates. I know I can utilize it in authorization rules, but was wondering if there was any way to utilize it in profiling.
I see under the profile rules the Active Directory dictionary is there, but if you click on it ISE just sits and spins and eventually nothing happens.
Solved! Go to Solution.
07-07-2017 08:59 AM
Not exposed today via AD Probe. As noted, policy based on identity can be applied via AuthZ policy. If have specific business requirement, you can request enhancement via Cisco account team.
07-07-2017 08:59 AM
Not exposed today via AD Probe. As noted, policy based on identity can be applied via AuthZ policy. If have specific business requirement, you can request enhancement via Cisco account team.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide