09-08-2022 12:23 PM
Hi all,
We are moving from AD to Intune and Azure AD. I can create the External MDM (Intune) server and its working fine. However, I want to create a new policy set for devices which migrated to Intune. Therefore I created a new SSID. But how can I authenticate the devices? How does the authentication policy looks? I can't select the MDM as our external identity store. We can't use the username/password option for connection to our wireless network, because the device should connect before the user logs into the device. Is the only option to use certifcates?
I did read a lot of documentation about this subject but I can't find our use case. Or I'm missing something, that is also possible of course
We are running ISE version 3.1 with patch 3 installed.
Hopefully someone could help me.
Thanks
Geert
Solved! Go to Solution.
09-08-2022 01:06 PM
09-08-2022 01:06 PM
09-09-2022 12:11 AM
Thanks for your links. In the first video he talks about authentication. So the answer is certificates for now.
09-08-2022 11:03 PM
ISE 3.2 allows to use EAP-TLS with AzureAD might be worth to check it out.
Release Notes https://www.cisco.com/c/en/us/td/docs/security/ise/3-2/release_notes/b_ise_32_RN.html#Cisco_Concept.dita_ca1dd90a-c40f-4c83-9994-da8e5b4536ca
BR
Rick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide