07-24-2018 07:59 AM
Hi all,
We have PC - Switch - ISE - AD in these connectivity.
When PC connected to the Switch, PC is mapped into VLAN A.
In VLAN A there is only ISE doing the DHCP, DNS, Web servers...
When browser in PC goes to google.com, PC is redirected to ISE portal to input the username/password.
This username/password is checked with AD.
if it is correct => PC is map to an another VLAN B and has full access.
Until this, every things are fine.
Now we want to have the Posture assessment by Anyconnect running in PC.
Our problem is AnyConnect is also redirected to Portal and could NOT find the policy server => Posture failed.
Any help on this? Thanks,
Minh
07-24-2018 09:45 AM
Please allow vlan gateway ip in the redirection acl.
07-24-2018 09:49 AM
Please add enroll to your DNS system, so AnyConnect will be able to use one more probe for discovering PSN.
enroll.cisco.com = 72.163.1.80
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide