cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4449
Views
8
Helpful
4
Replies

Cisco ISE in a multi-vendor environment

Kia Seng Ronald Tan
Cisco Employee
Cisco Employee

Hi all

Would like to seek your feedback on using Cisco ISE is a multi vendor environment. We would like to use ISE to do 802.1x auth, profile and posturing on wired and wireless.

The wired is a mixture of Cisco switches and Alcatel switches.
The wireless is on Aruba AP/WLC

Have anyone got any experience in such successful role out?

Sent from Cisco Technical Support iPad App

4 Replies 4

Akhtar Samo
Level 1
Level 1

This might help you out.

"Certain advanced use cases, such as those that involve posture assessment, profiling, and web authentication, are not consistently available with non-Cisco devices or may provide limited functionality, and are therefore not supported with non-Cisco devices. In addition, certain other advanced functions like central web authentication (CWA), Change of Authorization (CoA), Security Group Access, and downloadable ACLs, are only supported on Cisco devices.""

http://www.cisco.com/en/US/docs/security/ise/1.1.1/compatibility/ise_sdt.html


If you just want to authenticate endpoints through ISE, you can use non-cisco devices but if you want to use CoA, Posture etc. you have to use Inline posture node.

mojuneja
Level 1
Level 1

Other  Vendors Wireless access points support 802.1x authentication, however  they don’t support other features provided by Cisco ISE. So in order to  support those features we have to use IPEP.

You can refer following link for better understanding.

http://www.cisco.com/en/US/docs/security/ise/1.0.4/user_guide/ise10_ipep_deploy.pdf