12-11-2018 05:31 AM
Hi Experts,
Customer has a requirement, can we do it with ISE?
User A is one of AD user, User A connect Anyconnect VPN and authenticated by ISE with AD identity source. After authentication, ISE assign VPN group policy to ASA. Custome would ISE have a user list, only user in the list can have higher VPN network privilege because the AD dont have any attribute for reference.
I know ISE could define condition with user=A or user=B or user=C, but is there any better way to do it?
Thanks
DL
Solved! Go to Solution.
12-11-2018 06:31 AM
12-11-2018 05:54 AM
12-11-2018 06:10 AM
Customer is network administration team, they cannot get AD team support to do it. So ask us this question, it's presale question.
12-11-2018 06:31 AM
12-11-2018 09:45 PM
thank you, let me have a try.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide