Hi,
We are deploying ISE 2.3.
We use CWA for multi-factor authentication for Wireless and Wired employees.
1st issues) When a user goes from Wired connection to Wireless connection, CWA redirection does not work as expected, I can see he is getti...
We have split tunnel set up for VPN group users(contractors) to allow them access to local resources along with their company's email.
We are planning to disable split tunnels and give them access to their company's web email.
What are our options?
We want to deploy Cisco DCNM-LAN for medium size LANif we want to deploy DCNM server & Database server what is the requirements for both of themDatabase serverRAM - 3GB CPU Speed - 3.45 GHz with dual core-processor Free Disk Space - 100GBOracle datab...
@Marvin Rhoads , Thanks for your response. I found the workaround, on the FMC I created the custom role which has permission for both Security Analyst and Intrusion Admin, and used that to assign permission to users via Authz profile Cisco VPN attrib...
@stomoroga Not sure if you have found the solution or not but this is how I have set it up.Apart from setting up ASA VPN attribute to desired role on ISE side.On FMC under System > Users > External Authentication for Radius-Specific Parameters I have...
Its mix on Cat 9200 - 16.12.1 and 16.11.1 on Cat 9300 - 16.9.5. this happens to all the Cat 9K switches on our network.We have around 500 switches majority is 2960X and 3850S, we have only 8 Cat 9Ks and this "Mis Configured NAS detected alarm" comes ...
I have it working except, how can I assign multiple roles to same user. for example I want to assign Security Analyst and Intrusion Admin role to same user, how can I configure the Class attribute, I tried to use comma (did not work) I created separa...
@Arne Bier , You might be right but in our case it actually impacting dot1x.When I login and run show authentication session command on the switchI see domain UNKNOW for all the authentication session.and If I check radius server status on the switch...