I have a 3.4 ISE deployment on latest patch. It is "connected" to Entra via REST as an external identity store. I have pulled down a group from Entra (call it BYOD-EMPLOYEE) and I'd like to achieve the following -
Have a BYOD style portal or similar for "employees" that allow them to login to portal using Entra credentials and have ISE check if they are a member of the group "BYOD-EMPLOYEE" which I have pulled down and then provide Internet only. Is this achievable using a portal and the REST Entra Identity source I have setup?