04-28-2024 08:14 PM
We have SNS Server 3615 with ISE 3.2 (Patch # 5) running, with User access switch C9200, we are trying get users systems posture assessment, however, after successfully authentication, end user is not getting ISE redicted URLs on end-points, URL is reaching till UA switch-ports but not switching to end-points (systems) as a result, endpoint doesn't get network as the assessment is not completed and it show pending on ISE logs, need suggestion on this.
Note: User L3-VLAN is created on Firewall and L2 extended till UA switch.
04-29-2024 05:50 AM
What do you mean by "UA switch-ports" and "end-points (systems)"?
https://www.ise-support.com/cisco-ise-nad-configuration-templates/
05-04-2024 11:36 PM
@jogender-bansal wrote:We have SNS Server 3615 with ISE 3.2 (Patch # 5) running, with User access switch C9200, we are trying get users systems posture assessment, however, after successfully authentication, end user is not getting ISE redicted URLs on end-points, URL is reaching till UA switch-ports but not switching to end-points (systems) as a result, endpoint doesn't get network as the assessment is not completed and it show pending on ISE logs, need suggestion on this.
Note: User L3-VLAN is created on Firewall and L2 extended till UA switch.
It appears that there is an issue with the redirection of URLs for posture assessment after successful authentication on your network. To address this, it's crucial to systematically troubleshoot the configuration and connectivity aspects. This involves verifying the switch configuration for posture assessment redirection, ensuring seamless network connectivity between the UA switch and endpoints, reviewing firewall settings to allow traffic flow, inspecting ISE logs for any errors, conducting end-to-end connectivity tests, and re-evaluating ISE configuration settings.
05-05-2024 12:42 AM
Hi
I agree with you, however, all looks fine except that after successful authentication, ISE server pushes a redirect URL to the User Access switch and it reaches to the switch-port where end user is connected to however the redirected-url is not switching from user switch to end-point system
could you please help me to review the config help to finding out the root cause of issue to address this?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide