cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
983
Views
0
Helpful
1
Replies

ISE NMAP SCAN Profiling

Arjun176
Level 1
Level 1

hi,

 

I wanted to create profiling for printers and access devices. Am not able to get any attributes from the various probes configured.

So i decided to create nested profiling policy, parent policy with OUI and MAC address as the condition and enable NMAP Scan action, and Create Child condition using NMAP scan action to match the OS , Ports used. 

 

I understand NMAP scan is not the preferred option for profiling, What could be the issue ISE is not able to learn the attributes using the SNMP or other probes. 

What should be CF value in the parent policy  and child policy. 

 

 

1 Accepted Solution

Accepted Solutions

Mike.Cifelli
VIP Alumni
VIP Alumni
You should be able to get attributes from from your access devices. Have you properly configured your devices? Your CF value needs to be higher than the default Cisco built policies. Can you share your NAD configs?

View solution in original post

1 Reply 1

Mike.Cifelli
VIP Alumni
VIP Alumni
You should be able to get attributes from from your access devices. Have you properly configured your devices? Your CF value needs to be higher than the default Cisco built policies. Can you share your NAD configs?