06-06-2018 07:52 PM - edited 02-21-2020 10:57 AM
I was trying to follow this guide to configure monitor mode and it seems like the example provided, on page 10 Step 6 has the options for authentication failed to Reject, user not found to Reject and Process failed drop. Should we're in monitor mode, should these be continue on all options?
https://communities.cisco.com/docs/DOC-68150
Is there a better guide and updated for 2.4?
thanks in advance,
Solved! Go to Solution.
06-07-2018 04:36 AM
You're welcome.
Please mark the reply as a solution if it answered your question.
06-06-2018 08:31 PM
It remains correct even for the latest ISE release.
The AuthC action in ISE is to reject or drop but since the switchports have "authentication open" in monitor mode, the switch continues to allow access. The ISE live logs will show the failure (as they should in monitor mode) but endpoint access is not affected.
See https://communities.cisco.com/docs/DOC-68171 (page 14 step 5).
06-06-2018 09:05 PM
06-07-2018 04:36 AM
12-11-2019 03:46 PM
I am interested in the contents of the link https://communities.cisco.com/docs/DOC-68171 but it does not appear to accessible...can someone provide an alternate or give me more insight to what was on page 14 and 15?
Thanks,
Joe
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide