Cisco Cisco Identity Services Engine Software Guía De Operación
安全访问操作指南
注:另请点击
。
添加授权策略
步骤
1
点击
Policy Authorization。
步骤
2
点击“
Insert New Rule Below”。
图
12 插入新规则
图
35. 插入新规则
步骤
3
请添加以下授权策略。
Black List Default = This is the Default Authorization rule for blacklisting the devices, it could
be customized as per company policy where devices could either be redirected to a restricted web
page or even not allowed to be on the network once blacklisted.
Profiled Cisco IP Phones = Default Authorization rule for Cisco IP Phones.
Corp_Owned = This Authorization Rule is added for devices which would by-pass BYOD supplicant and
certificate provisioning flows when they are classified as corporate assets “Corp_Assets” and
coming over Corporate Wireless SSID using 802.1x using protocol MSCHAPV2.
© 2015 思科系统公司
第
30 页