12-01-2024 10:16 PM
Dear Cisco ISE lover,
I would like to share current issue whether bug or expected result, as I test in lab for posture scan condition on Wired LAN and it required user to manually click "Scan Again" button to validate trusted device into authorization.
As our objective to automatically scan posture without human interaction, once the user plug in LAN and faster authorization (Permit any).
Cisco ISE v3.1
ISE Posture/Secure Client 5.1.2.42
Compliant module 4.3.3335.6146
Thank you,
12-02-2024 05:00 AM
Why ISE 3.1 and not 3.3 or 3.4?
Sounds like CoA is not working. What is the NAD?
12-02-2024 07:54 PM
You are right, But we found 3.3 and 3.4 are most bug.
How to check CoA is working fine @ahollifield ?
12-02-2024 08:32 PM
share your switch AAA config config where users connect.
As recommended, this will help verify if COA is enabled.
12-02-2024 11:13 PM
12-03-2024 05:07 AM
12-03-2024 05:06 AM
In the Live Logs you will dynamic authorization log messages. These will be either pass or fail.
12-04-2024 05:43 PM
Could you elaborate than this please?
12-05-2024 05:15 AM
What do you mean? Open the Live Logs page, filter on a specific Endpoint ID (MAC Address). You see both authc/authz messages and CoA logs here.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide