Cisco Cisco Identity Services Engine Software Manual Técnico

Página de 24
Contents
Introduction
Prerequisites
Requirements
Components Used
Configure
Network Diagram
Detailed Flow
Configure AMP Cloud
Step 1. Download Connector from AMP Cloud
Configure ISE
Step 1. Configure Posture Policies and Conditions
Step 2. Configure Posture Profile
Step 3. Configure AMP Profile
Step 2. Upload Applications and XML Profile to ISE
Step 3. Download AnyConnect Compliance module
Step 4. Add AnyConnect Configuration
Step 5. Configure Client Provisioning Rules
Step 6. Configure Authorization Policies
Step 7. Enable TC-NAC Services
Step 8. Configure AMP Adapter
Verify
Endpoint
AMP Cloud
ISE
Troubleshoot
Introduction
This document describes how to configure Threat-Centric NAC with Advance Malware Protection
(AMP) on Identity Services Engine (ISE) 2.1. Threat severity levels and vulnerability assessment
results can be used to dynamically control the access level of an endpoint or a user. Posture
Services is also be covered as a part of this document. 
Note: The purpose of the document is to describe ISE 2.1 Integration with AMP, Posture
Services are shown as they are required when we provision AMP from ISE.
Prerequisites
Requirements
Cisco recommends that you have basic knowledge of these topics:
Cisco Identity Service Engine