If you are new to ISE I recommend starting with the ISE Community page:
https://communities.cisco.com/community/technology/security/pa/ise
For your specific question, what you are asking involves the MAB (MAC Authentication Bypass) feature. You basically create an endpoint group on your ISE server and then use that group in Authentication and Authorization profiles to in enforcing the desired policy outcomes.
The Configuration Guide and other documents cover the topic in detail.