I am creating Deployment Profiles from Secure X in order to push Secure Client (and our modules) to workstations and servers. The deployment profile for workstations works as expected, whether using a Full Installer or Network installer. I am now t...
Good day everyone.We are conducting a proof of concept with Azure MFA providing second factor authentication for RAVPN.Our parent agency owns the Azure AD that includes a user account for all our users in our agency.However, we own and manage an in-h...
On my Windows 10 computer, I can connect to the VPN using AnyConnect 3.1.02026 without difficulty. However, once I disconnect, I need to reboot my computer to connect again. When I try to connect the second (and subsequent) times I get the message, "...
Hello,I have a question about migrating a IPSec tunnel from between a Cisco C981F-k9 and a Cisco ASA firewall to a tunnel from the same Cisco C981F-k9 router to a Fortigate firewall. What is the 'best' way to migrate this tunnel?Currently I have conf...
The Cisco Document Team has posted an article. This document describes how to allow specific YouTube channels/videos and block the rest of YouTube in Web Security Appliance (WSA). Know of something that needs documenting? Share...
Hi. After AnyConnect upgrade from 4.10MR2 to 4.10MR7 (pre-deploy) it downloads ISE compliance module 4.3.2403.6145 from ISE upon every connect and tries to install it, although 4.3.2403.6145 module already installed.I know there is a workaround to co...
Hi,I wonder if there is a way to send every incoming and outgoing message both to the original destination and to another destination for analyses. Preferably before any scanning or policies interfere.I've tried google, but have not come up with anyt...
Hello, I have two ISE 3595 (3.2 Patch 3) physical appliances, one in each Data Centre. They will be end-of-life in a few months. They are currently used for Wired NAC with Posturing, Wireless NAC (corporate, BYOD and Guest and Hotspot). It is also us...
Hello,We had a perfectly functional ISE 2.7 posture deployment, but we had to upgrade to ISE 3.2.We set up another deployment & imported our 2.7 conf into the 3.2. Since then, our computers never go through the full posture process.We're using Anycon...
Hi Community, We have a newly established IKEV 1 tunnel from Cisco ASA to AWS. This tunnel is currently at up state but the traffic is not passing through the tunnel. When we enter the show command "show crypto ipsec sa peer X.X.X.X" output have enca...
I have created an external admin group in ISE, which is pointing to an AD group. There are several users in this AD group.Will all the users in this AD group gets ISE admin access or can it be restricted to few users.
Hi Community,I'm have an issue getting external authentication working on my FMC managed FTDs(firepower 2100s). I have configured the remote authentication server under in the FMC settings and then navigated over to platform settings to enable it on ...
Hello. Is it possible to use Duo MFA as main authentication method ? Where the user does not need to type logon password, only use the Duo mobile app. Thanks All
Hello everyone, how are you? I'm looking to implement Dot1x on my wired network using ISE as the authenticator and utilizing certificates via TLS. I'd like to know if there's a way to generate the certificate directly on ISE and install it on the ma...
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: