cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
771
Views
0
Helpful
3
Replies

NTLM Disabled and ISE-PIC

mcvosi
Level 1
Level 1

We recently disabled NTLM on our network, and now ISE-PIC is no longer seeing user sessions.

I have agents on the DCs and thought that would address it, but no.

 

3 Replies 3

I would say so; users are no longer identified. Cisco has no solution for this?

 

mcvosi
Level 1
Level 1

With NTLM attacks on the rise, how can Cisco continue to use it with ISE?

If your use case is getting information into FMC, ISE-=PIC is no longer required as of FMC 7.6+.

There is a new Passive Identity Agent that installs directly on your Windows DC(s) and reports back to FMC securely over TLS.

 

https://www.cisco.com/c/en/us/td/docs/security/secure-firewall/management-center/device-config/760/management-center-device-config-76/m_user-control-with-the-passive-identity-agent.html