Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

Labels

Forum Posts

Hi all,I am working on an important POV but we are facing one issues with Extreme Networks switches which is the following :This is how the NAD is configured :We tried different devices, the session of those sessions are terminated in the Live Logs.T...

rvacher by Cisco Employee
  • 2434 Views
  • 5 replies
  • 0 Helpful votes

Resolved! Posture AV Check

Hey Team,Is it possible for ISE to check the AV version of a server (TrendMicro), and automatically ensure that endpoints are on this version?I've seen this link:Cisco AnyConnect ISE Posture Windows Support Charts for Compliance Module v4.2.1538.0 - ...

yohh by Cisco Employee
  • 717 Views
  • 2 replies
  • 0 Helpful votes

Hello,I'm in the process of enabling cts manual on uplinks/downlinks for an environment that consists mainly of 3850s. I have a 6880 VSS pair and the question has now come up as to what needs to happen on the VSL link between the two switches in orde...

Hi ISE Experts.I have a customer that has two seperate ISE implementations. ISE (A) is for internal company wireless users, with access to the corporate AD user database. ISE (B) is partner managed ISE server, with access into the partner's corporate...

kbrewer by Cisco Employee
  • 572 Views
  • 2 replies
  • 0 Helpful votes

I need to confirm whether the following scenarios are supported or whether there are any potential issues in one. I don't believe so, but a sanity check would be greatly appreciated. Both scenarios are about avoiding the need to readdress F5 VIPs or ...

matsiege by Cisco Employee
  • 954 Views
  • 4 replies
  • 2 Helpful votes

Hi Community,I have a doubt over the below scenario how the policy flow works.If an Endpoint have AnyConnect Agent(4.5) installed with Posture module (4.5) and Compliance Module(3.6) and on ISE we have configured Client provisioning Policy and Postur...

Ali by Level 4
  • 2714 Views
  • 9 replies
  • 1 Helpful votes

Hello teamWe have a hotel customer and they want to install 1815W APs in every room (WLC will be 5520). In addition to this, they want the guests to be able to connect to their own AP in their own room only, using web auth. So the guests in room 101 ...

annen by Cisco Employee
  • 804 Views
  • 5 replies
  • 0 Helpful votes

Is there a capability to give a switch port a default SGT assignment?  Similar to how we can have a default-acl on a switch port in closed mode.   Having trouble with a 50 line default-acl on a 2960 switch.  Would like to use SGT to reduces the size ...

scamarda by Cisco Employee
  • 1693 Views
  • 2 replies
  • 0 Helpful votes

Thanks hslai. I really appreciate the quick response.  That bring me to our next question, my goal is to do some kind of MAB authentication from Juniper switch  with host lookup after FIPS is enabled. I currently have device profile configured for Ju...

jideji by Cisco Employee
  • 635 Views
  • 2 replies
  • 0 Helpful votes