I am trying to figure out why a newly created user is getting the incorrect client profile from group policy.
The secure client will not get the ISE posture or the ISE compliance modules, just hangs in pending.
If I change the user they modules download.
We only have 2 secure client profiles. update or no update
I have set up a new user and verified that everything looks correct, compared to other GPs.
When the user connects successfully to the VPN, they get the no update policy. even though the GP for them is the update policy.
I can see in the windows event viewer > Cisco secure Client - Event ID 3001
Loading preferences for current user from profile -> no update.xml.xml
Where can I start looking for why this user gets the incorrect policy?
ALSO..
Are there any diagrams/written out steps for when a VPN client connects?
It doesn't have to be super detailed. Just looking for the steps involved and what device/service.
1. VPN client initiates a connection
2. username and password checked against AD
3. The Cisco Secure Client - Downloader is performing update checks...
- This is where I would like more info on where/how
Thanks