cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
871
Views
0
Helpful
2
Replies

EasyConnect and threat response

dsheaffe@cisco.com
Cisco Employee
Cisco Employee

Hi all

Does the use of EasyConnect for authentication limit ISE's ability to send a CoA to a NAS in response to a security threat? 

Danny

1 Accepted Solution

Accepted Solutions

hariholla
Cisco Employee
Cisco Employee

Hi Danny,

All the threat containment flows apply to Easy Connect sessions too. We have some use cases like ISE + Qualys and ISE + Stealthwatch working with EasyConnect in our labs. EasyConnect is essentially MAB from RADIUS standpoint and ISE can change the authorization on specific triggers. Is there a specific scenario where you think the combo wouldn't work?

-Hari

View solution in original post

2 Replies 2

hariholla
Cisco Employee
Cisco Employee

Hi Danny,

All the threat containment flows apply to Easy Connect sessions too. We have some use cases like ISE + Qualys and ISE + Stealthwatch working with EasyConnect in our labs. EasyConnect is essentially MAB from RADIUS standpoint and ISE can change the authorization on specific triggers. Is there a specific scenario where you think the combo wouldn't work?

-Hari

Thank you Hari.  I didn't have a specific scenario in mind.  I thought it should work but just wanted to confirm. 

Danny

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: