cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1275
Views
0
Helpful
3
Replies

Deny access based on OS types in Cisco ISE

X-snip
Level 1
Level 1

Hi everyone,

 

I am trying to deny access to some devices based on the OS types. I have identified those devices by profiling them and redirection works. The issue is that all the portal types in ISE requires users to enter some form of credential or accept AUP...but in my case I just want to notify them via the portal that network access is denied based on the unsupported OS type on the device. Has anyone done this before or is there a way this can be customized in Cisco ISE ?

 

Appreciate any help.

3 Replies 3

Mike.Cifelli
VIP Alumni
VIP Alumni
IMO and experience the easiest thing to do is to utilize the hotspot portal. Essentially you can strip it down so that it is basically a splash page that tells the end user what is occurring. See here for further information: https://community.cisco.com/t5/security-documents/ise-guest-access-prescriptive-deployment-guide/ta-p/3640475
HTH!

Thanks for the reply Mike..will check it out.

You can also redirect them to a Blacklist portal, but the portal page is very basic with a white background and plain text so it depends on what experience you want the user to have.