Cisco Cisco Identity Services Engine 1.0.4 トラブルシューティングガイド

ページ / 23
ISE Version 1.3 pxGrid Integration with IPS pxLog
Application
Document ID: 118688
Contributed by Michal Garcarz, Cisco TAC Engineer.
Dec 23, 2014
Contents
Introduction
Prerequisites
     Requirements
     Components Used
Network Diagram and Traffic Flow
pxLog
     Architecture
     Installation
Snort
ISE
     Configuration
        Persona and Certificate
        Endpoint Protection Service (EPS)
        Authorization Rules
     Troubleshoot
Test
     Step1. Registration for pxGrid
     Step2. pxLog Rules Configuration
     Step3. First Dot1x Session
     Step4. Microsoft Windows PC Sends the Packet that Triggers the Alarm
     Step5. pxLog
     Step6. ISE Quarantine
     Step7. pxLog Unquarantine
     Step8. ISE Unquarantine
pxLog Functionality
pxGrid Protocol Requirements
     Groups
     Certificates and Java KeyStore
     Hostname
     Note for Developers
Syslog
     Snort
     Cisco Adaptive Security Appliance (ASA) Inspection
     Cisco Sourcefire Next Generation Intrusion Prevention Systems (NGIPS)
     Juniper NetScreen
     Juniper JunOS
     Linux iptables
     FreeBSD IPFirewall (IPFW)
VPN Readiness and CoA Handling
pxGrid Partners and Solutions
ISE APIs: REST vs EREST vs pxGrid
Downloads