Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Greetings @camilosilva , below my thoughts related to your post:
1.- Given the environment and scenario you are providing the answer is yes, the policy for machine only auth is something redundant.
The TEAP/eap chaining is going to depend here mostl...
hello @joeharb , check that the groups are correctly added within the Active Directly configuration you have, in any case you can go and try to update the SID values for the groups retrieved for the AD , review the following image
let me know if th...
by disabling the checkbox you are not longer going to be sending the syslog to the MNT nodes through TCP 8671 and the ISE messaging certificates but you are going to be sending logs through UDP 20514, the problem that you mention could be a problem o...
Hi @Capricorn , I was checking your question and you can go to ISE 3.0 version, please review the following guidelines and confirm that your environment has the requirements for hardware posted here https://www.cisco.com/c/en/us/td/docs/security/ise...
hello @asu ayyoub, the ISE posture module will not redo assessment unless there is one of the following scenarios:
Initial ISE posture module installation.User login.Power events.Interface status change.OS resume after sleep.Default Gateway (DG) chan...