Specify a Network device profile on ANC change via COA?

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-26-2023 01:47 PM
i have the following configuration
- network device profile:
- this is the authorization profile being use by the ANC policy sent from de Stealtwatch to the ISE
this are the global policy Exceptions on the Policy sets for this Result profiles:
Is there any way to make the requests that come from Stealtwatch to the ISE (after they are integrated) that is redirected to the the aruba switch to use the DEVIE PROFILE specify before and not the CISCO-AVPAIR parameter that aruba dont understand?
this is the operations live logs
any idea or is just not posiible?
- Labels:
-
Identity Services Engine (ISE)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-01-2023 12:36 AM - edited 07-01-2023 12:38 AM
I think you would need to add the calling station ID and the NAS IP address attributes to the RFC5176 section in the CoA section, otherwise can't see how this would work without them.
