cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2336
Views
5
Helpful
2
Replies

ISE 2.0. Posture Not Applicable using AnyConnect

Florian P
Level 1
Level 1

Hi,

 

I want to do posture compliance for the access network.

For testing purpose I have already manually deployed AnyConnect ISE Posture Module using the predeployment package. I have configured Profile using AnyConnect Profile Editor.

I would like to still use native windows supplicant and not AnyConnect NAM.

 

However the Posture status shows up as NotApplicable and on the endpoint the output is : No Policy Server detected.

 

Has anyone already faced this issue ?

 

NB : I have also configured Client provisioning on ISE + Posture ruleset but I never hit the right AuthZ profile so my client never gets redirected correctly to perform posture

 

 

1 Accepted Solution

Accepted Solutions

Rahul Govindan
VIP Alumni
VIP Alumni

I think you need to check why the right Authz policy is not hit. Posture takes place after you hit the redirect policy on first connection. If it does not hit a redirect policy with CPP Posture page, you will always receive the "No Policy Server detected" message. 

View solution in original post

2 Replies 2

Rahul Govindan
VIP Alumni
VIP Alumni

I think you need to check why the right Authz policy is not hit. Posture takes place after you hit the redirect policy on first connection. If it does not hit a redirect policy with CPP Posture page, you will always receive the "No Policy Server detected" message. 

Hi,

 

Thanks for your answer, it was actually the correct root to the issue. I used wrong Radius Attributes that kept the rule from matching ...

 

B/R