Cisco Cisco Identity Services Engine 1.3 Release Notes

Page of 80
 
74
Release Notes for Cisco Identity Services Engine, Release 1.3
 
  Cisco ISE, Release 1.3, Resolved Caveats
Cisco ISE, Release 1.3, Resolved Caveats
This section lists the caveats that have been resolved in this release.
Resolved Caveats
CSCut48536
Multiple hotfix rules separated by the OR operator produce false positive results
A single rule created for several hotfixes allows a machine without any hotfix to 
become compliant. For example, if you create a rule with the following hotfixes 
Windows 7 32 bit, Windows 7 64 bit, Windows 8 32 bit, Windows 8 64 bit, and so 
on separated by the OR operator, it allows a freshly installed Windows 8 64 bit 
machine without any hotfix to become compliant. The machine passes a generic 
registry check in Windows 7 32 bit hotfix and becomes compliant.
Workaround
Create a posture requirement rule for each operating system separately 
(for example, Windows 7 32 bit) to match the corresponding OS and hotfix rule.
CSCuw17919
Trend Micro Internet Security 10.x is not available.
While performing the posture assessment for Trend Micro Internet Security 10.x, 
you must configure the posture condition with Trend Micro Titanium 10.x, because 
Trend Micro Internet Security 10.x uses Trend Micro Titanium 10.x AV/AS engine.
CSCuw19276
Cisco NAC Agent and Cisco NAC Web Agent do not support Google Chrome 
version 45 and later.
The Java plug-in uses the Netscape Plugin API (NPAPI) in Goggle Chrome, which 
is integral to the functioning of the Cisco NAC Agent and Cisco NAC Web Agent. 
However, Google Chrome version 45 and later does not support NPAPI.
Workaround
To enable the Java plug-in:
1.
In the Google Chrome window address bar, copy and paste the following URL:
chrome://flags/#enable-npapi
2.
Click the Enable link to enable NPAPI for Mac and Windows. 
3.
Click Relaunch Now at the base of the page to effect the changes.
Table 17
Cisco ISE, Release 1.3, Open Agent Caveats (continued)
Caveat
Description
Table 18
Cisco ISE, Release 1.3, Resolved Caveats
Caveat
Description
CSCun65239
The desktop device does not display sessionExpired page when the “change 
password” and “device registration” options are enabled.