cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Announcements
Choose one of the topics below to view our ISE Resources to help you on your journey with ISE

This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

643
Views
0
Helpful
1
Replies
Highlighted

RDP session usign machine credentials against user credentials

Can someone please help me out with this issue i am trying to figure it out.

Ver: ISE 2.4

802.1x

Authentication: PEAP

Authorization: AD User / MSCHAPv2

 

When i login at workstation, policy works fine and correct DACL is applied and user gets appropriate network access. But when same user RDP into that machine with same credentials, authentication passed to ise is machine authentication against user credentials and so default DACL is applied, in our case we have set it to domain controller and internet only.

 

Is there anyone with same issue, if yes how can we have user access workstation with RDP session and policy works same way.

 

Thank you

1 REPLY 1
Highlighted
Cisco Employee

This is a design limitation in the Windows supplicant. See the following document for more information and suggestions.

Windows RDP and 802.1x Authentications 

Content for Community-Ad