- I understand that a Filter-ID is applied to a user’s account on ISE
- The filter ID looks for the group policy with the same name defined on FirePower
- Extended ACLs are defined to the group policy on FirePower
These three settings need to be defined for a proper filtering of users.
Filter ID in defined ISE? | Group Policy defined on FirePower? | ACLs defined to Group Policy? | Outcome? |
Yes | Yes | Yes | Access is properly limited. |
Yes | No | Yes | |
Yes | Yes | No | |
Yes | No | No | |
From the scenarios listed below, can you tell what the outcome is for the remaining 3? Would the users have access or not?
Thanks in Advance