cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
682
Views
0
Helpful
1
Replies

ISE 2.3 - Posture -- Rule configuration

mkouame17
Level 1
Level 1

Dear Guys,

 

I would like to know about these questions if it is possible and how to do that :
 
1) It is possible to allow Cisco ISE server to check the local AV server to know what is the current version of the update file ?
 
2) How to allow Cisco ISE server to force the endpoint PC to download the AV update file from the local AV server ?
 
3) How to check the windows security patch on the endpoint device ?
 
4) How to check if the hard disk is encrypted ?
 
5)  How to check if the endpoint device user is the local admin ?
1 Reply 1

Hi,

1. In order for ISE to be update to with the latest AV/AS ISE needs to regularly update the posture, this is configured in ISE > Administration > Settings > Posture > Updates.

2. ISE uses remediations to instruct the computer that it needs to update AV/AS if it's out of date.

 

These guides are helpful and give instructions on how to achieve most things you require.

 

ISE Posture services guide

Disk Encryption example

 

HTH