cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
36028
Views
7
Helpful
5
Comments
thomas
Cisco Employee
Cisco Employee

This paper will focus on Identity Services Engine (ISE) ability to determine the endpoint state by doing a posture assessment. Before the release of ASA 9.2.1 VPN users requiring posture functionality required an Inline Posture Node (IPN) between the VPN infrastructure and the LAN protected network. With the release of ASA 9.2.1 we now have the ability to enforce policy the ASA and ISE has the ability to send a “policy push” after a posture assessment has taken place.

Comments
jsblendorio
Level 1
Level 1

Is there an update for the document for ISE 2.2?

thomas
Cisco Employee
Cisco Employee

Nothing has changed for ISE 2.2.

The fundamentals should remain the same.

Let us know if something no longer applies or is correct.

jsblendorio
Level 1
Level 1

On page 18, the should the NACagent 4.x continue to be used? This was replaced by ISE posture, right?

thomas
Cisco Employee
Cisco Employee

Right, AnyConnect with the Compliance module.

Please see How To Configure Posture with AnyConnect Compliance Module and ISE 2.0

jsblendorio
Level 1
Level 1

Thanks, this is helpful.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: