cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
814
Views
1
Helpful
1
Replies

Inventory of Installed Cisco Secure Client via ISE Console

jitendrac
Level 1
Level 1

Hi All,

We have deployed Cisco ISE 3.0 Patch 7 for one of our customers. We are using Cisco Secure Client (formerly AnyConnect) for posture checking. Cisco Secure Client has been installed on all endpoints via third party tool "Manage Engine Desktop Central". 
The customer requirement is to know the count and details of Cisco Secure Clients who are successfully registered OR connected with ISE and are in working condition for doing posture complaints.

I am trying to use Context Visibility -->Application and then searching for Application Name "cisco anyconnect secure mobility client" OR "cisco anyconnect ise posture module" OR "cisco anyconnect ise compliance module" and then checking Count under "Endpoint with this software" column.
But i am not sure if this right way to find out total Cisco Secure Clients who are successfully connected/registered with ISE and are working. Is there any other way to check this ?

1 Accepted Solution

Accepted Solutions

agrissimanis
Level 1
Level 1

The easiest way to do this would be to run "Posture Assessment by Endpoint" report under Reports -> Endpoints and users.

This will give you a list of all clients who have actually sent a posture report to ISE and if they have passed/failed posture. Export that to Excel and you should be good.

Or you could also just look at the authentication logs over time, these endpoints that match your "posture pass" authorization rule must have the Secure client installed and working end to end.

Technically you could use any software inventory tool to check if the Secure client is installed on an endpoint, but this won't tell you if that endpoint has actually connected to the network/sent a posture report to ISE.

 

 

View solution in original post

1 Reply 1

agrissimanis
Level 1
Level 1

The easiest way to do this would be to run "Posture Assessment by Endpoint" report under Reports -> Endpoints and users.

This will give you a list of all clients who have actually sent a posture report to ISE and if they have passed/failed posture. Export that to Excel and you should be good.

Or you could also just look at the authentication logs over time, these endpoints that match your "posture pass" authorization rule must have the Secure client installed and working end to end.

Technically you could use any software inventory tool to check if the Secure client is installed on an endpoint, but this won't tell you if that endpoint has actually connected to the network/sent a posture report to ISE.