01-09-2019 06:08 AM
Our current network does not have remediation VLANs set up and the only way to get PCs authorized is to allow it on the network so technicians can posture it so it authenticates.
I'm trying to find guidance on how to set the remediation VLANs that if a device is not able to authenticate on the network, it will fall into the remediation VLAN which will grant it limited network access until we can get it on the domain.
Thanks!
Solved! Go to Solution.
01-09-2019 08:12 AM
01-09-2019 06:45 AM
You could try configuring authentication event parameters at interface level.
authentication event fail action authorize vlan <Your remediation Vlan>
authentication event server dead action authorize vlan <Data Vlan>
authentication event no-response action authorize vlan <Guest Vlan>
authentication event server alive action reinitialize
01-09-2019 08:12 AM
03-18-2021 04:00 AM
03-18-2021 05:03 AM
Hi @owaishussain ,
please take a look at: ISE Posture Prescriptive Deployment Guide., search for Posture Remediation.
Hope this helps !!!
03-18-2021 04:01 AM
(cant find the details)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide