10-06-2016 07:28 AM - edited 03-11-2019 12:08 AM
if an employee is terminated - and removed from active directory - how do we remove any and all devices they registered via the mydevices portal?
10-06-2016 08:15 AM
There is an option in ISE "Purge portal-user information for LDAP/AD users after 'x' days of inactivity"
Days of inactivity indicates that the user has not logged into any portal for the specified number of days.
Guest Access > Settings > Guest Account Purge policy.
Regards
Gagan
rate as correct if it helps!!!!
10-07-2016 07:51 AM
I guess I'm not sure what to put for inactivity - If it's a 2 week vacation I wouldn't want their devices deleted - yet if they've been fired I wouldn't want their devices still on the next day.
are there api's written for this type of thing?
10-07-2016 08:31 AM
In that case, you might have to monitor those clients and manually delete those endpoints.
Still in order to look for any API thing. Would suggest to open up a case in TAC for further analysis.
Currently we have this option to purge inactive accounts.
Regards
Gagan
ps : rate if it helps!!!!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide