cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
222
Views
0
Helpful
1
Replies

NGIPS & AMP for endpoint blocking

ymadheka
Level 4
Level 4

Hi Team,

 

We are working on an opportunity of NGIPS & AMP (Network and Endpoint) at a bank and the have been asked whether we can achieve the same in the solution offering. The query is as below:

 

Query: In case of McAfee AV not available or installed on an end user machine (to be considered as rogue machine) is there any policy that can be configured in NGIPS / AMP that can block the network communication for these endpoints.

 

We have mentioned that to define the network access by checking the presence or absence of a condition ISE posture check is required but just checking if there is any other workaround that can be done to achieve this with NGIPS and AMP solution offering.

 

Kindly advise.

 

Thanks & Regards,

Yogesh Madhekar

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

I don't think one can achieve that with either NGIPS or AMP for Endpoints.

As you noted, ISE Apex license with Posture Service configured would be the solution.

Review Cisco Networking for a $25 gift card