This document is for Cisco Engineers, partners and customers deploying Cisco Stealthwatch 7.0 with Cisco Identity Services Engine (ISE) 2.4 using Cisco Platform Exchange Grid (pxGrid) 1.0.
In this release ANC mitigation actions have been updated to use ANC policies. Cisco Security Group Tags (SGT) are now incorporated in network flows illustrating Cisco Segmentation. Custom event violation policies can be created from this information.
I am trying to have ISE ( v2.4 ) auto-enroll itself via SCEP to receive device certs from an external SCEP server ( LINUX ).however i am not seeing the 'crypto pki trustpoint' command on the ISE server via which i am to configure / request for cert via th...
Hi Guys, anybody here knows what is the use of the command below in the switches? aaa accounting identity start-stop group radius? I searched over the internet but it have only minimal information. Thanks for the help.
Dear Cisco ISE Community,
I’m looking for a suggestion, or a best practice, to effectively combine the redirection to ISE Captive Portal with the usage of a web proxy, on a non-standard port.
Are you aware of any indication on this topic?
Hi experts,I would like any suggestions on this topology. We are is the middle of replacing our old ASA5520 with the new FirePower. Our current firewall terminate our IPsec tunnels and the GRE is terminated on the first inside router's loopback on the sec...
Working on an IBNS 2.0 setup and I have the VLAN ID being sent to ISE. I added the following command to the switch to get the VLAN information to show up in the authentication request:
mab request format attribute 32 vlan access-vlan