Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I have a customer using the latest Anyconnect client on their endpoints connecting to an ASA. They have ISE deployed, and want to ensure that posture checking happens prior to the endpoint gaining access to the network. I believe this is the default ...
All,
I have a situation where my customer wants to do dot1x machine authentication, but the corporate machines don't (and won't) have certificates signed by their root/intermediate CAs, which signed the ISE certs. The reason is that their CA issues...
When I am configuring a distributed ISE deployment, what certificates do I need on each node? I have a PAN, secondary PAN, and 3 PSNs in my network. I have an admin cert for all of the nodes, and an EAP, DTLS, and portal cert on the Primary admin nod...
Hello all,
I'm wanting to set up sponsored guest in ISE, with an extremely limited network. Only using internal ISE users, as there is no AD, LDAP, etc on this network (and we don't want one there). Just ISE, a switch, a 2504 WLC, and an AP. Is the...
Arne,
Thanks for your response. I'm not sure what certs the clients have on them. Would Windows machines typically have a cert that's already trusted in ISE, or that could be easily/quickly downloaded to the ISE trusted cert store? If so, I could j...
Is MAR maybe the best solution here? The users are already authenticated via smartcards. They primarily want to ensure the security of LAN ports so non-corporate devices get no access to the network.
Just so I'm clear, it will work, just not through the wizard? So I just need to do manual configuration for sponsored guest or self reg on ISE and the WLC, and it should work? I'll walk through the guide in the morning. Thank you for your quick respo...