12-11-2017 11:48 AM
Hello Experts!
I have a requirement where ISE needs to do Profiling and Posturing for VPN endpoints using PAN's GlobalProtect, I want your opinion on how to support Posturing and Profiling for VPN users connecting to the network using PAN's GlobalProtect. I have an assumption on the following info which I got from a Cisco Engineer.
Solved! Go to Solution.
12-11-2017 11:53 AM
You are correct on all 3! The only posture integrated service we have is with Cisco based vpn concentrator (ex: ASA).
I don't think you will gain much visibility with profiling as well. I have asked another SME to be sure
12-11-2017 11:53 AM
You are correct on all 3! The only posture integrated service we have is with Cisco based vpn concentrator (ex: ASA).
I don't think you will gain much visibility with profiling as well. I have asked another SME to be sure
12-11-2017 12:22 PM
Currently that is correct. Without a way to trigger CoA, then user may be deemed posture compliant but no way to reauthorize after initial quarantine without manual intervention by user.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide