cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
519
Views
0
Helpful
1
Replies

ISE Posture says compliant but can't connect to anything

sturgesturge
Level 1
Level 1

Hello, I use ISE Posture in my job - I'm an end user, not somebody who works in network security, so please bear with me if I don't use all of the correct terminology - and I've been having no end of trouble with it. I've spoken to multiple people on helpdesks in my company and none of them have any idea how to fix this, so I'm coming direct to you.

I have intermittent issues connecting to internal websites and network drives when I use ISE Posture. I get a message saying that I'm compliant and network access is allowed, but everything just times out and refuses to connect. Helpdesk staff tell me that the logs always say I'm compliant. This is an intermittent issue - about 20 to 30% of the time I can connect fine, but it's very unpredictable and over the last week I've probably lost a whole day's worth of time trying to get this fixed. We only recently upgraded to ISE Posture and I never had any issues at all before this. 

I know this is incredibly vague and I apologise for that, but could anybody give me any hints of what might be causing this issue and how I can possibily fix it? I'm currently in the busiest, most pressured period of the year in my role and access to these internal resouces is absolutely critical for me - I literally cannot do my job if ISE Posture won't allow me access. I'm at my wits' end with this. Any possibile help you could give me would be appreciated.

1 Reply 1

It is very likely that you can't do anything at all. That is the goal that the end user can't circumvent the restrictions. It's the task of the people who have implemented the posturing to make sure it works. And whenever the problems are with posturing, the helpdesk likely doesn't understand the inner workings of posture. These are also hard to get for the people who implement it. But the helpdesk at least should escalate your ticket to the security department. And if they don't know, they also can come here and ask for help. Of open a case with Cisco TAC.