cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
383
Views
5
Helpful
1
Replies

Cisco NAC Migration to ISE 2.0

Arif Prasla
Level 1
Level 1

Hello, Currently, In my environment I have Cisco NAC appliance which is being used to authenticate and admit users into our network via NAC agent thus preventing unauthorized host devices on the network.

 

Due to the site slow network connection and prolong loss communication, I am looking for solution in ISE which will authenticate the users transparently when users is logged into the network via windows credential with minimal load/configuration on the downstream switches.

 

Any solution and direction is highly appreciated.

Thank You

arif

1 Reply 1

Timothy Abbott
Cisco Employee
Cisco Employee
If your WAN is slow and suffers frequent connectivity issues, I suggest having a PSN and domain control located at the site. This will allow authentication to still occur even if the WAN is experiencing issues. This will also allow you to continue to do posture assessment since AnyConnect will also be able to communicate with the local PSN.

Regards,
-Tim
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: