cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1304
Views
1
Helpful
2
Replies

Authorization policy for only domain computers

virginpulse
Level 1
Level 1

Hi Cisco

I need help to setup Policy for authorization to the network only for domain computers.

I have connected MS Domain controller to the ISE and using for username and password checking.

I would setup additional  Authorization policy that only computer joined to domain able to pass and join to the corporate network.

Also I would know how to setup Certificate authorization policy so only computers that have certificate from the Domain controller can pass this step of authorization.

Best regards,

2 Replies 2

ognyan.totev
Level 5
Level 5

Please take a look here Cisco ISE Wired Access Deployment Guide

hslai
Cisco Employee
Cisco Employee

Take a look at

Essentially, the authentications will be based on certificate using a certificate authentication profile to specify the certificate field to be used as the identity for authorization, and the authorization will perform AD group lookup.