cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
620
Views
0
Helpful
2
Replies

ISE Licensing

yohh
Cisco Employee
Cisco Employee

Hey Team,

For Androids or iPhone's, do we need Apex Licenses if we want an EMM to push the certificate to the endpoint only? The customer does not want to make ISE policies based on EMM/MDM registration - just EAP-TLS certificates.

Is it a requirement to have an EMM /MDM integration for this? Based on the info above, I think only Base licensing is needed but I would like some confirmation.

Thank you!

1 Accepted Solution

Accepted Solutions

Jason Kunst
Cisco Employee
Cisco Employee

You’re correct, if the MDM onboards the device certificate and you don’t have any authorization policies to check for compliance or registration then all we requires is BASE to do the EAP-TLS authentication. You would simply need to trust the client certificates authenticating again ISE

View solution in original post

2 Replies 2

Jason Kunst
Cisco Employee
Cisco Employee

You’re correct, if the MDM onboards the device certificate and you don’t have any authorization policies to check for compliance or registration then all we requires is BASE to do the EAP-TLS authentication. You would simply need to trust the client certificates authenticating again ISE

Thank you for the confirmation Jason!