cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Announcements
Choose one of the topics below to view our ISE Resources to help you on your journey with ISE

This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

145
Views
0
Helpful
1
Replies
VIP Advocate

Is there a non user-interactive cert renewal mechanism with ISE BYOD?

Customer commented today that they were under the impression that the ISE BYOD solution has the ability to renew a client's certificate without user intervention (i.e. supplicant performs an auto enrollment prior to the cert expiration).  I am pretty sure this is not the case, and that the process is very manual (i.e. ISE has to redirect user to a portal and user goes through all the motions again as they did when they initially on-boarded).

 

It's my understanding that in order to do what my customer is expecting, you would need an app that lives on the device (like an MDM app) that can initiate the SCEP etc.

 

Everyone's tags (3)
1 ACCEPTED SOLUTION

Accepted Solutions
Highlighted
Cisco Employee

Re: Is there a non user-interactive cert renewal mechanism with ISE BYOD?

You’re correct byod is all about user onboarding devices themselves as they are not managed but the company.

If they want more hands off need to look into mdm scripting sccm emm type solutions

But even with mdm the user still has to accept some things and click buttons

View solution in original post

1 REPLY 1
Highlighted
Cisco Employee

Re: Is there a non user-interactive cert renewal mechanism with ISE BYOD?

You’re correct byod is all about user onboarding devices themselves as they are not managed but the company.

If they want more hands off need to look into mdm scripting sccm emm type solutions

But even with mdm the user still has to accept some things and click buttons

View solution in original post