cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
429
Views
0
Helpful
2
Replies

Symantec dat date not working with Cisco NAC

MARK BAKER
Level 4
Level 4

I am having an issue with getting Cisco NAC to see the correct Syamantec DAT date.

When I configure "Symantec:AV:DAT-Date days-since-last-update 14" it is not recognized by Cisco NAC.

Has anyone else had this issue?

Also, I cannot get NAC to work when I configure my VPN client IP address statically on Cisco ACS. This gave me a headache for awhile. Has anyone seen this issue?

Other than the two issues above, NAC has worked as expected.

Thanks for any help with the above issues,

Mark

2 Replies 2

ebreniz
Level 6
Level 6

days-since-last-updateThe rule element is true if the attribute contains a date and if the difference in days between that date and the current date is less than or equal to the number that you specify. For example, in the following rule element:

Symantec:AV:DAT-Date days-since-last-update 14

the rule element is true for posture validation requests whose Symantec:AV:DAT-Date attribute contain a date that is no more than 14 days in the past.

http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_user_guide_chapter09186a00802335f1.html

I found in the release notes of my Symantec posture plugin that they do not support the DAT-DATE feature, at least in the version that I have.

If anyone knows of a version of the Symantec posture plugin that supports this feature, I would appreciate information on how to obtain it.

Thank you,

Mark

Review Cisco Networking for a $25 gift card