cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
577
Views
0
Helpful
1
Replies

Legacy Operating Systems

mbenz
Level 1
Level 1

FMC Policy to block legacy operating systems from network access. How can I create a policy to block operating systems such as XP, Vista etc... ?

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

This is not easy or practical to do from FMC. You would need an accurate fingerprint identification of each host on the network, something that can potentially be done with nmap but prone to false positive/negative. Also, it only applies to hosts whose traffic transits the managed firewall(s).

This sort of thing is more commonly done with a network access control (NAC) solution such as Cisco ISE using the Posture feature.

Review Cisco Networking for a $25 gift card