05-12-2015 12:07 PM - edited 03-10-2019 10:44 PM
I was wondering if anyone can confirm if ISE is able to integrate with WSA to enforce policies?
I heard it was coming, but cannot find any info online
05-13-2015 01:52 AM
it's in the release notes. Latest WSA SW 8.7 software is capable of doing this. You need to have ISE 1.3 minimal. I think this is related to PxGrid, this functionalitiy is there from this version.
http://www.cisco.com/c/dam/en/us/td/docs/security/wsa/wsa8-5/WSA_8-7_Release_Notes.pdf
05-13-2015 01:54 AM
Also look into this manual, you need certs or something for secure communication between the ISE nodes. Not familiar myself, so can't help you further, but the documentation is here.
chapter 8-1
http://www.cisco.com/c/dam/en/us/td/docs/security/wsa/wsa8-5/WSA_8-7-0_UserGuide.pdf
05-15-2015 05:01 AM
Yes WSA can communicate with ISE 1.3 via PxGrid . You will be needing ISE Plus license
http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/118688-technote-pxlog-00.html
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide