Hi,
If my understanding is correct then as part of access-accept you would be sending url-redirect and url-redirect-acl as vsa string from ise. As part of access-accept, please send this cisco vsa string, "fqdn-acl-name=NSP". With this the feature w...