cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
848
Views
0
Helpful
2
Replies

Exclude mobile devices from posture

We are running Cisco ISE 2.4 patch 10 and we are facing issues in posture policy.

I have created 4 policies for posturing in following sequence.

 Mobile devices ( to exclude mobile devices for posturing )

 Unknown redirect for client provisioning portal

 Posture-compliant

 Posture-Non-compliant

but still is mobile devices also hits policy on Unknown redirect for client provisioning portal mobile devices get client providing portal after connecting to SSID

I want to exclude mobile devices.

Please help.

2 Replies 2

Mobile devices get redirected to Client Provisioning Portal because they are satisfying the conditions required for Unknown Policy.Also have you disabled Android and IOS rules in Client Provisioning Policy?
Can you mention the Conditions configured for Unknown Policy?

nspasov
Cisco Employee
Cisco Employee

There are a couple of things that you can do here:

  • Under Administration > System > Settings > Posture > General > Default Posture Status > Set to "Compliant"
  • Configure your Authorization policy to only posture devices that are posture capable. For instance, set the posture rules for endpoints that are profiled as "Windows" and/or "OSX"

I hope this helps!

Thank you for rating helpful posts!

Thank you for rating helpful posts!