cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1655
Views
0
Helpful
2
Replies

Management VPN Tunnel feature with POSTURE

MS-JK
Level 1
Level 1

Question on the new feature in 4.6 Management VPN Tunnel. Is there anyway to integrate this with ISE Posture/Compliance module? Example - only pre-connect PC via Anyconnect Management VPN Tunnel IF that PC has latest patches. Just like you could do with user initiated VPN tunnels.

 

Thanks

1 Accepted Solution

Accepted Solutions

Hi,
No, posture would only work when the user is connected to the VPN tunnel. Normally the mgmt tunnel would not be allowed full access anyway, so limit what it can access with a DACL.

HTH

View solution in original post

2 Replies 2

Hi,
No, posture would only work when the user is connected to the VPN tunnel. Normally the mgmt tunnel would not be allowed full access anyway, so limit what it can access with a DACL.

HTH

Gustavo Medina
Cisco Employee
Cisco Employee

The above aswer is incorrect. Posture can work for the management-tunnel like it does for a regular connection profile.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: