cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
488
Views
0
Helpful
2
Replies

How to configure Webauth together with posture assessment with AnyConnect

tminh
Cisco Employee
Cisco Employee

Hi all,

We have PC - Switch - ISE - AD in these connectivity.

When PC connected to the Switch, PC is mapped into VLAN A.

In VLAN A there is only ISE doing the DHCP, DNS, Web servers...

When browser in PC goes to google.com, PC is redirected to ISE portal to input the username/password.

This username/password is checked with AD.

if it is correct => PC is map to an another VLAN B and has full access.

Until this, every things are fine.

Now we want to have the Posture assessment by Anyconnect running in PC.

Our problem is AnyConnect is also redirected to Portal and could NOT find the policy server => Posture failed.

Any help on this? Thanks,

Minh

2 Replies 2

nithinrs78901
Level 1
Level 1

Please allow vlan gateway ip in the redirection acl.

Please add enroll to your DNS system, so AnyConnect will be able to use one more probe for discovering PSN.

 

enroll.cisco.com = 72.163.1.80