cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
718
Views
0
Helpful
8
Replies

Posture required manually scan from user

oumodom
Level 1
Level 1

Dear Cisco ISE lover,

I would like to share current issue whether bug or expected result, as I test in lab for posture scan condition on Wired LAN and it required user to manually click "Scan Again" button to validate trusted device into authorization. 

As our objective to automatically scan posture without human interaction, once the user plug in LAN and faster authorization (Permit any).

Cisco ISE v3.1
ISE Posture/Secure Client 5.1.2.42
Compliant module 4.3.3335.6146

Thank you,    

8 Replies 8

Why ISE 3.1 and not 3.3 or 3.4?  

Sounds like CoA is not working.  What is the NAD?

You are right, But we found 3.3 and 3.4 are most bug. 
How to check CoA is working fine @ahollifield ?

share your switch AAA config config where users connect.

As recommended, this will help verify if COA is enabled.

-hope this helps-

Thank @ammahend 

As remember, for Posture v4.9 it was doing well. But I can't confirm that v5.1 is bug existing or not. 
If you have more experience, please kindly another approach to check.

Thank so much @ammahend  

In the Live Logs you will dynamic authorization log messages.  These will be either pass or fail.

Could you elaborate than this please? 

What do you mean?  Open the Live Logs page, filter on a specific Endpoint ID (MAC Address).  You see both authc/authz messages and CoA logs here.