08-08-2023 07:53 AM
Hi All,
We have deployed Cisco ISE 3.0 Patch 7 for one of our customers. We are using Cisco Secure Client (formerly AnyConnect) for posture checking. Cisco Secure Client has been installed on all endpoints via third party tool "Manage Engine Desktop Central".
The customer requirement is to know the count and details of Cisco Secure Clients who are successfully registered OR connected with ISE and are in working condition for doing posture complaints.
I am trying to use Context Visibility -->Application and then searching for Application Name "cisco anyconnect secure mobility client" OR "cisco anyconnect ise posture module" OR "cisco anyconnect ise compliance module" and then checking Count under "Endpoint with this software" column.
But i am not sure if this right way to find out total Cisco Secure Clients who are successfully connected/registered with ISE and are working. Is there any other way to check this ?
Solved! Go to Solution.
08-11-2023 03:52 AM - edited 08-11-2023 04:13 AM
The easiest way to do this would be to run "Posture Assessment by Endpoint" report under Reports -> Endpoints and users.
This will give you a list of all clients who have actually sent a posture report to ISE and if they have passed/failed posture. Export that to Excel and you should be good.
Or you could also just look at the authentication logs over time, these endpoints that match your "posture pass" authorization rule must have the Secure client installed and working end to end.
Technically you could use any software inventory tool to check if the Secure client is installed on an endpoint, but this won't tell you if that endpoint has actually connected to the network/sent a posture report to ISE.
08-11-2023 03:52 AM - edited 08-11-2023 04:13 AM
The easiest way to do this would be to run "Posture Assessment by Endpoint" report under Reports -> Endpoints and users.
This will give you a list of all clients who have actually sent a posture report to ISE and if they have passed/failed posture. Export that to Excel and you should be good.
Or you could also just look at the authentication logs over time, these endpoints that match your "posture pass" authorization rule must have the Secure client installed and working end to end.
Technically you could use any software inventory tool to check if the Secure client is installed on an endpoint, but this won't tell you if that endpoint has actually connected to the network/sent a posture report to ISE.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide