Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello,I am trying to implement 802.1x using EAP-TEAP along with smart card authentication. I selected EAP-TLS as primary and secondary EAP method and chose "Use Smart Card" in both options. But the authentication always fails and the user is unable t...
Hello,We have an existing pair of FPR 3110 appliances in our DR running two FTD instances in each appliances - one as DC firewall and other as DMZ firewall. Now we are planning to purchase a new pair of FPR 3110 appliances in our HQ and one of the su...
Hello,We have a customer who has windows defender as their Anti Malware solution. Currently in the posture unknown we are using manual remediation (shows a message text of antivirus is outdated). We are planning to change the remediation to automatic...
Hello all,
I have a running Cisco AnyConnect VPN setup configured in our FTD which is further integrated with Cisco ISE for posturing. Now we have a requirement to enable Start Before Logon feature (SBL) for one of our users and leave it disabled for...
Hello,
I am using EAP-TLS in our environment and have signed our ISE certificate with the internal Microsoft CA. We have an intermediate CA and a Root CA. The ISE certificate is signed by the intermediate CA and it is valid till 2029. The intermediat...
Hello,Thanks a lot for the reply. I am aware of the TEAP settings when we use user and computer certificates. But the issue is when we use smart card for authentication. I want to know what will be the settings under primary eap method and under seco...
Hello,Did the issue get resolved?. I think I am facing similar issue. We have 2 HP printers on the same switch, one of them gets profiled correctly and the other does not. The ISE version is 3.4 patch 6. Thanks
Hello,Were you able to resolve this issue?. In our case the acl is seen in the port, but we do not get access until and unless we either remove the ise config or shut and unshut the port.
If I have a windows client and it is postured as compliant, will it consume one essential license, one advantage license and one premier license or just one premier license?