When I connect to my VPN headend (FTD 7.2.9) I make it through authentication and authorization. ISE recognizes my host as "Posture Unknown", but no browser pops-up automatically with the Client Provisioning Portal. If I open a browser and navigate to an http site, redirection works. The redirect ACL name is exactly the same on the FTD and in the ISE Authorization Policy. The redirection ACL denies DNS, DHCP and ISE from redirection and permits all else. Packet capture shows host never attempts to access an http site over my VPN tunnel, which I suppose is the reason the automatic redirect doesn't work. I have seen more than one video that demonstrates the browser automatically launching after the VPN connection is established. Any help will be greatly appreciated.
... View more