cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
336
Views
1
Helpful
1
Replies

Automation of Anyconnect profile change affect after pushing the new profile via ISE

rajatsha
Cisco Employee
Cisco Employee

Hello everyone,

We are making the ANyconnect profile change from hide to visible and visible to hide based on if a user is part of  an AD group and we have got it working i.e. I can see the profiles replaced as soon as I hit other rule so it is working, however it is not very customer friendly as we will have to do the following:

1) Moving from normal(visible) to hide VPN: We have to quit and start the Anyconnect so that it doesn't show any more.

2) Moving from hide VPN to normal (visible): We have to logoff/restart the PC to be able to see the Anyconnect VPN window again.

Is there a easy way i.e. more user friendly way to achieve this. Ideally we don't want end-user to do anything, if possible.

Please note we are using posture in stealth mode along with Anyconnect in the customer environment, so if you can suggest some option to run some script somehow using some posture remediation/something, I will be happy to hear.

Best Regards,

Rajat Sharma

1 Reply 1

hslai
Cisco Employee
Cisco Employee

What you've observed is expected.

Please discuss with ISE PM about your requirements, as it seems a scenario of sharing a PC/Mac and that has not been what this feature built for.