10-13-2018 08:17 AM - edited 03-11-2019 01:50 AM
I am trying to design a system where we have lots of routers/switches but only a few windows machines. We have a couple window PCs and servers for network management tools. This network management system is independent and physically separate from our corporate active directory. It's small enough so we don't need AD. We have local logons and do local group policy to lock down the windows machines. We use TACACS+ on ISE for user authentical for the several hundred routers and switches, but we then have local accounts for the windows computers. We don't want to deploy AD and have yet another thing to manage and patch (I get that isn't not super hard, but zero work is better).
Can we configure a windows computer to authenticate users against ISE?
Solved! Go to Solution.
10-14-2018 04:42 PM
10-13-2018 10:10 AM
10-14-2018 07:45 AM - edited 10-14-2018 07:46 AM
Can I use the ISE internal user store to authenticate a user logging into a Windows 10 laptop?
10-14-2018 11:36 AM
10-14-2018 03:16 PM
Jason,
Thank you for posting but I'm not sure we are communicating.
I don't see in the link you provide where to configure my Windows 10 laptop to authenticate a Windows user with the ISE internal user store. I want to be able to log into my windows laptop using ISE. I would expect to have to configure some local Windows policy to point Windows at the ISE for authentication. But I might be missing something.
Thank you.
10-14-2018 04:42 PM
10-15-2018 04:18 PM
That is what I was afraid of but at least now I know for sure.
Thank you for the assistance.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide